Netgear WC7600 参照マニュアル

ページ / 307
Manage Security Profiles and Profile Groups 
104
ProSAFE Wireless Controller WC7600 
Manage Authentication Servers and Authentication 
Server Groups
You can set up internal and external authentication servers and server groups that the 
wireless controller can use for authentication.
Authentication Server Concepts
You can specify three types of authentication servers: internal, external RADIUS, and 
external LDAP:
Internal authentication server. The wireless controller handles authentication. If you 
use this setting, set up WiFi clients on the User Management screen (see 
External RADIUS server. You can define a basic external RADIUS server that you would 
typically use in the profiles of a basic profile group of a small-scale network. You must 
specify its configuration on the basic Authentication Server screen (see the next section) 
so that you can select this authentication option during the configuration of a profile. As 
part of the advanced authentication server settings, you can define multiple external 
RADIUS servers that you would typically use in a more complex network with many 
profiles. You can then assign different RADIUS servers to different profiles.
By default, the external RADIUS server for the basic authentication group is called 
basic-Auth. You cannot change this name. By default, the external RADIUS 
authentication servers for the advanced authentication groups are called Auth1 through 
Auth8, and you can change these names. You can assign the basic-Auth server to an 
advanced profile group, and you can assign a RADIUS server of an advanced 
authentication group to the basic profile group.
See the following configuration guidelines for external RADIUS servers:
-
You need to add only the IP address of the wireless controller as a RADIUS client to 
the RADIUS server. All managed access points are then automatically known to the 
RADIUS server.
-
-
For configuration guidelines for external authentication of captive portal users, see 
External LDAP server. You can define one external LDAP server (commonly referred to 
as an Active Directory [AD] server). You must specify its configuration on the basic 
Authentication Server screen (see the next section) so that you can select this 
authentication option during the configuration of a profile.
By default, the external LDAP server for the basic authentication group is called 
basic-LDAP. You cannot change this name, and you cannot configure any LDAP servers