ZyXEL Communications Vantage Service Gateway VSG-1200 V2 User Manual

Page of 282
VSG-1200 V2 User’s Guide
Chapter 9 Authentication
84
The following table describes the labels in this screen. 
Table 17   System Settings: Authentication 
LABEL
DESCRIPTION
No Authentication
Select this option to disable subscriber authentication. Subscribers can 
access the Internet without entering user names and passwords. 
This is the default setting.
User Agreement
Select User Agreement to direct a subscriber to an Internet service usage 
agreement page before accessing the Internet.
Redirect Page URL 
Link
Specify the URL of the user agreement page in the field provided. Click 
Code to display the HTML source code of a default sample page.
Standard User 
Agreement Page
Select this option to use the pre-configured user agreement page on the 
VSG. 
Built-in Authentication
Select this option to authenticate the subscribers using the local subscriber 
database. Then click Select option to choose a per-configured setting in 
the Current Preset option field. 
Note: When you select this option, you must also configure 
the Billing and Accounting screens.
Current preset option
This field is available when you select Built-in Authentication.
This field displays the current pre-configured setting for the built-in 
authentication. To select a predefined option, click Select option to open 
the Scenario Guide screen (refer to 
).
RADIUS
Select this option to authenticate subscribers using a remote RADIUS 
server. Then configure the following fields.
Check Local Account First Select this option to have the VSG authenticate a subscriber using the 
local user database first. If the account information is not found, then the 
VSG authenticates subscribers using the RADIUS server(s) specified. 
Clear this check box to have the VSG authenticate subscribers using the 
RADIUS server(s) only. 
Accumulation
Select this option for multiple re-login until the time allocated is used up. If 
a subscriber logs out and accesses the Internet again within the time 
period specified in the Idle Timeout field, the subscriber does not have to 
enter the user name and password again to log in. 
Time to Finish
Select this option to allow each subscriber a one-time login. If a subscriber 
logs out before the allocated time expires, the subscriber does not have to 
enter the user name and password to access the Internet again.
Primary/Secondary 
RADIUS Server
Server IP Address Enter the IP address of a RADIUS server in dotted 
decimal notation.
Authentication Port 
Specify the authentication port of the RADIUS server. The common port 
numbers are 1645 and 1812.
Accounting Port
Specify the accounting port of the RADIUS server. The common port 
numbers are 1646 and 1813.
Secret Key
Specify a password (up to 31 alphanumeric characters) as the key to be 
shared between the RADIUS server and the VSG.
The key is not sent over the network. 
Note: This key must be the same on the RADIUS server and 
the VSG.
Retry Attempts when 
Primary fail
Specify the number of times (1 to 3) the VSG resends an authentication 
request to the primary and/or secondary RADIUS servers.