Alcatel-Lucent IAP93 Podręcznik Użytkownika Strona 137

  • Pobierz
  • Dodaj do moich podręczników
  • Drukuj
Przeglądanie stron 136
137 | Authentication AOS-W Instant 6.3.1.1-4.0 | User Guide
Alcatel-Lucent does not recommend the use of LEAP authentication method, because it does not provide any
resistance to network attacks.
Authentication Termination on OAW-IAP
AOS-W Instant allows Extensible Authentication Protocol (EAP) termination for Protected Extensible Authentication
Protocol (PEAP)-Generic Token Card (PEAP-GTC) and Protected Extensible Authentication Protocol-Microsoft
Challenge Authentication Protocol version 2 (PEAP-MSCHAV2). PEAP-GTC termination allows authorization
against an Lightweight Directory Access Protocol (LDAP) server and external RADIUS server while PEAP-
MSCHAV2 allows authorization against an external RADIUS server.
This allows the users to run PEAP-GTC termination with their username and password to a local Microsoft Active
Directory server with LDAP authentication.
l EAP-Generic Token Card (GTC)— This EAP method permits the transfer of unencrypted usernames and
passwords from client to server. The main uses for EAP-GTC are one-time token cards such as SecureID and
the use of LDAP or RADIUS as the user authentication server. You can also enable caching of user credentials
on the OAW-IAP to an external authentication server for user data backup.
l EAP-Microsoft Challenge Authentication Protocol version 2 (MS-CHAPv2) This EAP method is widely
supported by Microsoft clients. A RADIUS server must be used as the back-end authentication server.
Supported VSAs
AOS-W Instant supports the following VSAs for user role and VLANderivation rules:
l AP-Group
l AP-Name
l ARAP-Features
l ARAP-Security
l ARAP-Security-Data
l ARAP-Zone-Access
l Acct-Authentic
l Acct-Delay-Time
l Acct-Input-Gigawords
l Acct-Input-Octets
l Acct-Input-Packets
l Acct-Interim-Interval
l Acct-Link-Count
l Acct-Multi-Session-Id
l Acct-Output-Gigawords
l Acct-Output-Octets
l Acct-Output-Packets
l Acct-Session-Id
l Acct-Session-Time
l Acct-Status-Type
l Acct-Terminate-Cause
l Acct-Tunnel-Packets-Lost
l Add-Port-To-IP-Address
l Aruba-AP-Group
Przeglądanie stron 136
1 2 ... 132 133 134 135 136 137 138 139 140 141 142 ... 334 335

Komentarze do niniejszej Instrukcji

Brak uwag