Configuring RADIUS Authentication
-
If you enable use of the NAS IP, the appliance sends its configured IP address to the RADIUS server, rather than the source IP address used in establishing the RADIUS connection.
-
If you configure the NAS ID, the appliance sends the identifier to the RADIUS server. If you do not configure the NAS ID, the appliance sends its host name to the RADIUS server.
-
When you enable the NAS IP, the appliance ignores any NAS ID that is configured using the NAS IP to communicate with the RADIUS server.
Configuring Gemalto Protiva
-
Install the Protiva server.
-
Install the Protiva SAS Agent Software, that extends the Internet Authentication Server (IAS), on a Microsoft IAS RADIUS server. Make sure you note the IP address and port number of the IAS server.
-
Configure a RADIUS authentication profile on NetScaler Gateway and enter the settings of the Protiva server.
Configuring SafeWord
-
The IP address of NetScaler Gateway. The IP address must be the same IP address that you configured in the RADIUS server client configuration. NetScaler Gateway uses the internal IP address to communicate with the RADIUS server. When you configure the shared secret, use the internal IP address. If you configure two appliances for high availability, use the virtual internal IP address.
-
A shared secret.
-
The IP address and port of the SafeWord server. The default port number is 1812.