RADIUS Authentication
When RADIUS authentication takes place, the following events occur.
- A user attempts to gain access to the RUCKUS device by doing one of the following:
- The user is prompted for a username and password.
- The user enters a username and password.
- The RUCKUS device sends a RADIUS Access-Request packet containing the username and password to the RADIUS server.
- The RADIUS server validates the RUCKUS device using a shared secret (the RADIUS key).
- The RADIUS server looks up the username in its database.
- If the username is found in the database, the RADIUS server validates the password.
- If the password is valid, the RADIUS server sends an Access-Accept packet to the RUCKUS device, authenticating the user. Within the Access-Accept packet are three RUCKUS vendor-specific attributes that indicate the following:
- The user is authenticated, and the information supplied in the Access-Accept packet for the user is stored on the RUCKUS device. The user is granted the specified privilege level. If you configure RADIUS authorization, the user is allowed or denied usage of the commands in the list.