Authentication Server Side

The RADIUS (Remote Authentication Dial In User Service) server used for authentication must be EAP-capable. Consider the following when choosing a RADIUS server:

  • Types of authentication methods supported on RADIUS, as mentioned previously.
  • Need to support VSAs. Parameters such as Extreme-Netlogin-Vlan-Name (destination vlan for port movement after authentication) and Extreme-NetLogin-Only (authorization for network login only) are brought back as VSAs.
  • Need to support both EAP and traditional user name-password authentication. These are used by network login and switch console login respectively.
Note

Note

For information on how to use and configure your RADIUS server, refer to Configuring the RADIUS Client and to the documentation that came with your RADIUS server.