Installation guide

D-66 Motorola RF Switch System Reference Guide
5. Within the Associated Roles field, deselect the Monitor role and select WebUser Administrator.
6. In the Access Modes field, deselect the Console, Telnet and SSHv2 roles and leave the WEB-UI role
enabled. Click OK.
7. Select Save (from the lower left-hand corner) to apply the changes.
Radius Management Authentication
The RF Switch can optionally authenticate management users against a Radius server. Radius allows the RF
Switch to authenticate management users against a common user database to provide centralized account
management, control and accounting.
When Radius authentication is enabled, the RF Switch forwards each management authentication request
to the defined Radius server. If the credentials are valid, the Radius server responds with a Radius Accept
which must include the associated roles and access methods as return attributes. If the access mode and
credentials are valid, the RF Switch grants access. If the access mode or credentials are invalid, the session
is rejected. If no associated role information is provided by the Radius server, the RF Switch assigns read-
only access permissions for the session.
In the event a Radius server is unavailable, a secondary or tertiary Radius server can be used. If no Radius
servers are available, the RF Switch will fall-back to the local user database. If no authentication service is
available, the RF Switch can be optionally configured to provide read-only access.