Справочник Пользователя для Raritan Computer Home Theater Server KX2101-v2.20-0B-E

Скачать
Страница из 263
 
Chapter 5: User Management 
 
 
133
 
Returning User Group Information via RADIUS 
When a RADIUS authentication attempt succeeds, the KX II-101 
determines the permissions for a given user based on the permissions of 
the user's group. 
Your remote RADIUS server can provide these user group names by 
returning an attribute, implemented as a RADIUS FILTER-ID. The 
FILTER-ID should be formatted as follows: Raritan:G{GROUP_NAME
where GROUP_NAME is a string denoting the name of the group to 
which the user belongs. 
 
RADIUS Communication Exchange Specifications 
The KX II-101 sends the following RADIUS attributes to your RADIUS 
server: 
Attribute 
Data 
Log on 
Access-Request (1) 
 
NAS-Port-Type (61) 
VIRTUAL (5) for network connections. 
NAS-IP-Address (4) 
The IP address for the KX II-101. 
User-Name (1) 
The user name entered at the login screen. 
Acct-Session-ID (44) 
Session ID for accounting. 
User-Password(2) 
The encrypted password. 
 
 
Accounting-Request(4)  
Acct-Status (40) 
Start(1) - Starts the accounting. 
NAS-Port-Type (61) 
VIRTUAL (5) for network connections. 
NAS-Port (5) 
Always 0. 
NAS-IP-Address (4) 
The IP address for the KX II-101. 
User-Name (1) 
The user name entered at the login screen. 
Acct-Session-ID (44) 
Session ID for accounting. 
Log off 
Accounting-Request(4)  
Acct-Status (40) 
Stop(2) - Stops the accounting 
NAS-Port-Type (61) 
VIRTUAL (5) for network connections. 
NAS-Port (5) 
Always 0.