Specifications
Command Line Interface
32
When sending an Access-Request message, the R502-M
includes the following four RADIUS attributes:
Attribute
Attribute #
User-Name 1
NAS-Identifier 32
NAS-IP-Address 4
User-Password 2
The value for the Network Access Server (NAS) identifier is
the chassis alias, which is set using the command: set chassis
name. The value for the NAS IP address is the IP of the
primary Ethernet port. The username and password values
are entered by the user. The password is protected using the
MD5 hashing scheme described in RADIUS RFC 2865.
The R502-M expects only one attribute to be present in an
Access-Accept message: Service-Type (6). The acceptable
values for this attribute are:
Login (1) Grants access in a user role (i.e., Guest
login privileges).
Administrative (6) Grants access in an administrative role
(i.e., Administrative login privileges).
Any other attributes contained in the Access-Accept message
are ignored.
Configuring
FreeRADIUS for
the R502-M
RADIUS authentication was verified using FreeRADIUS
(www
.freeradius.org) server version 0.9.1. Configuring the
FreeRADIUS server to authenticate users of an R502-M card
requires two steps, which are described below.
1. Enter the R502-M as a managed device. To configure
FreeRADIUS to accept requests on behalf of the R502-M,
you must edit the file clients.conf. (By default the file resides










