System information

Wireless Security Configuration
Configuring RADIUS Client Authentication
When setting up VLAN IDs for each user on the RADIUS server, be sure to use
the RADIUS attributes and values as indicated in the following table.
Number RADIUS Attribute Value
64 Tunnel-Type VLAN (13)
65 Tunnel-Medium-Type 802
81 Tunnel-Private-Group-ID VLANID (1 to 4094 as hexadecimal
or an ASCII string)
No t e VLAN IDs on the RADIUS server can be entered as a hexadecimal number or
an ASCII string, as set by the VLAN ID Format (see page 7-27).
When dynamic VLAN support is enabled, the access point must be using a
security configuration that enables 802.1X authentication (see page 7-11) and
have a RADIUS server configured (see page 7-25). Wireless clients must also
support 802.1X client software to be assigned to a specific VLAN.
Web: Setting RADIUS Server Parameters
The Authentication Servers window on the Wireless Interfaces SSID Configuration
window provides the primary and secondary RADIUS server setup parame-
ters.
The web interface enables you to modify these parameters to use RADIUS
authentication on the access point:
Primary Radius Server Setup: Configure the following settings to use
RADIUS authentication on the access point.
IP Address: Specifies the IP address or host name of the RADIUS
server.
Port: The User Datagram Protocol (UDP) port number used by the
RADIUS server for authentication messages. (Range: 1024-65535;
Default: 1812)
Secret Key: A shared text string used to encrypt messages between
the access point and the RADIUS server. Be sure that the same text
string is specified on the RADIUS server. Do not use blank spaces in
the string. (Maximum length: 20 characters)
Timeout: Number of seconds the access point waits for a reply from
the RADIUS server before resending a request. The default is 5
seconds. (Range: 1-60 seconds)
7-26