Adding and Managing a RADIUS Server

You can use a RADIUS Server profile to define a remote Authentication, Authorization, and Accounting (AAA) server for use by one or more networks that utilize an external RADIUS server (such as Enterprise AAA (802.1X) networks).

Before you begin this procedure, ensure that you have the IP address, port number, and shared secret of the primary and secondary (if any) RADIUS server that you want to use to authenticate network users.

Complete the following steps to create a RADIUS server profile:

  1. Add the RADIUS Server service to your tenant account. From the navigation bar, select Network Control > Service Catalog. Alternatively, you can select Network Control > My Services, then click Add Service.
  2. Find the RADIUS Server tile and click Add.
    The Add RADIUS Server page is displayed.
    Add RADIUS Server
  3. Enter a Profile Name for the RADIUS server.
  4. Select the Type of RADIUS server to configure. The options are:
    • Authentication RADIUS Server: Selecting this option enables the wireless device to send authentication requests to the RADIUS server to verify user credentials and allow or deny network access.
    • Accounting RADIUS Server: Selecting this option enables the wireless device to send accounting information to the RADIUS server to record user login, logout, and usage details of the authenticated user.
    Note: User Role Mapping is available only for Authentication RADIUS Servers and is not supported for Accounting RADIUS Servers.
  5. Primary Server: Complete the following primary RADIUS Server fields:
    1. Port: Enter the listening port number.
      Note: The default port for the Authentication RADIUS Server is 1812, and for the Accounting RADIUS Server is 1813.
    2. Shared Secret: Enter the shared secret configured on the RADIUS Server.
  6. Secondary Server: Click Add Secondary Server to display the secondary server settings.
    Note: Add a secondary server only if a secondary RADIUS Server is available. To remove the secondary server, click Remove Secondary Server.

    Complete the following secondary RADIUS Server fields:

    • Port: Enter the listening port number.
      Note: The default port for the Authentication RADIUS Server is 1812, and for the Accounting RADIUS Server is 1813.
    • Shared Secret: Enter the shared secret configured on the RADIUS Server.
  7. Click Add.
    The new RADIUS Server is created and displayed in the RADIUS Server page.