Configuring FastIron-specific attributes on the RADIUS server
If the RADIUS authentication process is successful, the RADIUS server sends an Access-Accept message to the FastIron device, authenticating the device. The Access-Accept message can include attributes that specify additional information about the device. If you are configuring MAC authentication and 802.1X authentication on the same port, you can configure the attributes listed in the following table on the RADIUS server.
You add the attributes to your RADIUS server configuration, and configure the attributes in the individual or group profiles of the devices that will be authenticated. The FastIron Vendor-ID is 1991, with Vendor-Type 1. For more information, refer to Configuring RADIUS.
Attributes for RADIUS
These attributes can be used in a device profile on the RADIUS server for MAC authentication. These attributes are optional. They are only applicable when both MAC authentication and 802.1X authentication are configured on the port and the authentication sequence is MAC authentication followed by 802.1X authentication. These attributes are not needed in the device profile if only MAC authentication is enabled on the port.