Rsa Radius Server; Setting Up The Rsa Radius Server - HP A7533A - Brocade 4Gb SAN Switch Base Administrator's Manual

Hp storageworks fabric os 6.1.1 administrator guide (5697-0235, december 2009)
Hide thumbs Also See for A7533A - Brocade 4Gb SAN Switch Base:
Table of Contents

Advertisement

e. After returning to the Internet Authentication Service window, add additional policies for all login
types for which you want to use the RADIUS server. After this is done, you can configure the switch.

RSA RADIUS server

Traditional password-based authentication methods are based on one-factor authentication, where you
confirm your identity using a memorized password. Two-factor authentication increases the security that
uses a second factor to corroborate identification. The first factor is either a PIN or password and the
second factor is the RSA SecureID token.
RSA SecurID with an RSA RADIUS server is used for user authentication. Our switch does not communicate
directly with the RSA Authentication Manager, so the RSA RADIUS server is used in conjunction with the
switch to facilitate communication.
To learn more about how RSA SecurID works, visit

Setting up the RSA RADIUS server

For more information on how to install and configure the RSA Authentication Manager and the RSA
RADIUS server, see your documentation or visit www.rsa.com.
1.
Create user records in the RSA Authentication Manager.
2.
Configure the RSA Authentication Manager.
a. Add an agent host in RSA Authentication Manager.
3.
Configure the RSA RADIUS server.
Setting up the RSA RADIUS server involves adding RADIUS clients, users, and vendor specific attributes
to the RSA RADIUS server.
a. Add the following data to the vendor.ini file
vendor-product = Brocade
dictionary = brocade
ignore-ports = no
port-number-usage = per-port-type
help-id = 2000
b. Create a brocade.dct file that needs to be added into dictiona.dcm file located in the following
path:
C:\Program Files\RSA Security\RSA RADIUS\Service
Figure 2
modified in the brocade.dcm file.
The dictionary files for RSA RADIUS Server must remain in the installation directory. Do not move the
files to other locations on your computer.
Add Brocade-VSA macro and define the attributes as follows:
• vid(Vendor-ID): 1588
• type1 (Vendor-Type): 1
• len1 (Vendor-Length): >=2
shows what the brocade.dct file should look like.
www.rsa.com
for more information.
Figure 3
shows what needs to be
Fabric OS 6.1.1 administrator guide
77

Advertisement

Table of Contents
loading

Table of Contents