<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to configure radius authentication for EXOS switch management in ExtremeCloud A3</title>
    <link>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74003#M64</link>
    <description>Thanks for the article. Is it possible to query an internal AD source for the user instead of creating the admin accounts locally?</description>
    <pubDate>Thu, 13 Jan 2022 17:01:11 GMT</pubDate>
    <dc:creator>MLD</dc:creator>
    <dc:date>2022-01-13T17:01:11Z</dc:date>
    <item>
      <title>How to configure radius authentication for EXOS switch management</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/73999#M60</link>
      <description>Hello,&lt;BR /&gt;&lt;BR /&gt;I'm trying to configure A3 as our radius-mgmt server for switch authentication. I found an older article that mentions only &lt;SPAN&gt;Cicso Management Authentications are supported? The EXOS switch is a 440G2 running 31.3.1.3-patch1-10, with radius mgmt-access enabled and correct shared-secret. I enabled 'CLI Access' under the device settings as well. The RADIUS log show 'Auth Rejected' and I'm not sure what step/filter I might be missing. &lt;BR /&gt;&lt;BR /&gt;Any guidance or step-by-step guides you can provide would be great. &lt;BR /&gt;&lt;BR /&gt;Thanks,&lt;BR /&gt;Matt&lt;/SPAN&gt;</description>
      <pubDate>Wed, 05 Jan 2022 23:28:06 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/73999#M60</guid>
      <dc:creator>MLD</dc:creator>
      <dc:date>2022-01-05T23:28:06Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure radius authentication for EXOS switch management</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74000#M61</link>
      <description>Hi, this should be possible nowadays with A3.&lt;BR /&gt;&lt;SPAN&gt;In System Configuration/Admin Access add a new admin role, give it Switches Cli Read or Write.&lt;/SPAN&gt;&lt;BR data-aura-rendered-by="27073:0" /&gt;&lt;SPAN&gt;In your authentication source add an admin access rule and set the access-level to the admin access role you defined.&lt;/SPAN&gt;</description>
      <pubDate>Thu, 06 Jan 2022 13:57:25 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74000#M61</guid>
      <dc:creator>OscarK</dc:creator>
      <dc:date>2022-01-06T13:57:25Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure radius authentication for EXOS switch management</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74001#M62</link>
      <description>Forgot to mention that step as well, I created a new admin profile "Switch CLI" with both read and write switch cli access. That profile was added under my authentication source / administration rules / switch cli... &lt;BR /&gt;&lt;BR /&gt;My auth source uses AD with ldap condition to match my account to the administration rule. I also added 'Connection Type' equals CLI-Access as a filter under my connection profile. The connection profile is set to Filters 'any'</description>
      <pubDate>Thu, 06 Jan 2022 19:54:58 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74001#M62</guid>
      <dc:creator>MLD</dc:creator>
      <dc:date>2022-01-06T19:54:58Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure radius authentication for EXOS switch management</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74002#M63</link>
      <description>I just got it working using local user accounts on A3.&lt;BR /&gt;See below article.&lt;BR /&gt;https://extremeportal.force.com/ExtrArticleDetail?an=000060486</description>
      <pubDate>Wed, 12 Jan 2022 15:57:53 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74002#M63</guid>
      <dc:creator>OscarK</dc:creator>
      <dc:date>2022-01-12T15:57:53Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure radius authentication for EXOS switch management</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74003#M64</link>
      <description>Thanks for the article. Is it possible to query an internal AD source for the user instead of creating the admin accounts locally?</description>
      <pubDate>Thu, 13 Jan 2022 17:01:11 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74003#M64</guid>
      <dc:creator>MLD</dc:creator>
      <dc:date>2022-01-13T17:01:11Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure radius authentication for EXOS switch management</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74004#M65</link>
      <description>One important thing, you need to configure port 1815 for mgmt-access instead of 1812. However in my tests it did not make a difference and I could only authenticate through local A3 users, however I am checking why ldap does not work.</description>
      <pubDate>Thu, 13 Jan 2022 17:16:50 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74004#M65</guid>
      <dc:creator>OscarK</dc:creator>
      <dc:date>2022-01-13T17:16:50Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure radius authentication for EXOS switch management</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74005#M66</link>
      <description>I upgraded to 4.0 today and re-tested with no luck. I also changed the radius mgmt-access port to 1815. &lt;BR /&gt;&lt;BR /&gt;Do you think a connection profile needs to be setup as well? I noticed the NAS-Port-Type is Virtual and I have no connection profile setup for that type of connection. I do have a separate profile with the connection type set to CLI-Access using my internal AD/LDAP source</description>
      <pubDate>Wed, 19 Jan 2022 21:56:08 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74005#M66</guid>
      <dc:creator>MLD</dc:creator>
      <dc:date>2022-01-19T21:56:08Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure radius authentication for EXOS switch management</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74006#M67</link>
      <description>Hi, the connection profile that you hit should have the right auhtentication source added to it.&lt;BR /&gt;&lt;BR /&gt;In my lab a bug was found in the extreme library handling snmp and we can change that file to fix it.&lt;BR /&gt;If you open a case with Extreme Networks and ask it to be assigned to me (Oscar Koot) we can check if the same fix helps for you.&lt;BR /&gt;</description>
      <pubDate>Thu, 20 Jan 2022 10:23:09 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74006#M67</guid>
      <dc:creator>OscarK</dc:creator>
      <dc:date>2022-01-20T10:23:09Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure radius authentication for EXOS switch management</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74007#M68</link>
      <description>Thanks Oscar!&lt;BR /&gt;Can you send me your local user auth setup? I'd like to test that as well, maybe using A3 local user auth is the better option here.</description>
      <pubDate>Thu, 20 Jan 2022 22:28:04 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74007#M68</guid>
      <dc:creator>MLD</dc:creator>
      <dc:date>2022-01-20T22:28:04Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure radius authentication for EXOS switch management</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74008#M69</link>
      <description>Hi,&lt;BR /&gt;&lt;BR /&gt;in the connection profile I have 1 profile that filters simply on device IP for test but in a real network you should match on the right connection type or maybe port.&lt;BR /&gt;In the sources of the profile add local.&lt;BR /&gt;Create a local user and set the actions to the correct access-level. Make sure the time/date are good. There were issue's where the user could only login the next day as the start time was set wrong.</description>
      <pubDate>Fri, 21 Jan 2022 10:26:41 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74008#M69</guid>
      <dc:creator>OscarK</dc:creator>
      <dc:date>2022-01-21T10:26:41Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure radius authentication for EXOS switch management</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74009#M70</link>
      <description>I was testing some other features with A3 so I just got back to this. Can you send me a screenshot of your setup?&lt;BR /&gt;&lt;BR /&gt;Here's the RADIUS log entry for the test account I setup...&lt;BR /&gt;&lt;BR /&gt;
&lt;DIV class="row align-items-start form-row" style="font-size: 14.4px; line-height: 1.2; margin: 0px -5px; padding: 0px; display: flex; color: #333333; font-family: &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-style: normal; font-weight: 400; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; background-color: #ffffff"&gt;
&lt;DIV class="col-form-label col-sm-3" style="font-size: 0.7875rem; line-height: 1.71429; margin: 0px; padding: calc(0.375rem + 1px) 5px; width: 284.484px; max-width: 25%; color: #4c566a; font-weight: 500; text-align: right"&gt;&lt;LABEL class="mb-0" style="font-size: inherit; line-height: 1.2; display: inline-block; margin-bottom: 0px !important"&gt;RADIUS Request&lt;/LABEL&gt;&lt;/DIV&gt;
&lt;DIV class="col-sm-9" style="font-size: inherit; line-height: 1.2; margin: 0px; padding: 0px 5px; width: 853.484px; max-width: 75%"&gt;
&lt;DIV class="text-pre my-2" style="font-size: 12.6px; line-height: 1.2; padding: 0px; white-space: pre; font-family: SFMono-Regular, Menlo, Monaco, Consolas, &amp;quot;Liberation Mono&amp;quot;, &amp;quot;Courier New&amp;quot;, monospace; margin: 0.5rem 0px 0.5rem 0px !important"&gt;User-Name = "testuser" User-Password = "******" NAS-IP-Address = 10.10.200.1 NAS-Port = 0 Service-Type = Login-User Called-Station-Id = "00:04:96:9e:57:50" Calling-Station-Id = "10.24.156.103" NAS-Identifier = "lab_es01" Proxy-State = 0x3834 NAS-Port-Type = Virtual Event-Timestamp = "Jan 26 2022 14:25:16 EST" Message-Authenticator = 0xa44631837f24d451e2bc18af610cf90e Stripped-User-Name = "testuser" Realm = "null" FreeRADIUS-Client-IP-Address = 10.24.10.156 PacketFence-KeyBalanced = "8d43c43cef1ed029bd9bb5b119c2518d" PacketFence-Radius-Ip = "10.24.10.155" PacketFence-Src-Ip = "10.10.200.1" SQL-User-Name = "testuser"&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;DIV class="row align-items-start form-row" style="font-size: 14.4px; line-height: 1.2; margin: 0px -5px; padding: 0px; display: flex; color: #333333; font-family: &amp;quot;Helvetica Neue&amp;quot;, Helvetica, Arial, sans-serif; font-style: normal; font-weight: 400; letter-spacing: normal; orphans: 2; text-align: left; text-indent: 0px; text-transform: none; white-space: normal; widows: 2; word-spacing: 0px; background-color: #ffffff"&gt;
&lt;DIV class="col-form-label col-sm-3" style="font-size: 0.7875rem; line-height: 1.71429; margin: 0px; padding: calc(0.375rem + 1px) 5px; width: 284.484px; max-width: 25%; color: #4c566a; font-weight: 500; text-align: right"&gt;&lt;LABEL class="mb-0" style="font-size: inherit; line-height: 1.2; display: inline-block; margin-bottom: 0px !important"&gt;RADIUS Reply&lt;/LABEL&gt;&lt;/DIV&gt;
&lt;DIV class="col-sm-9" style="font-size: inherit; line-height: 1.2; margin: 0px; padding: 0px 5px; width: 853.484px; max-width: 75%"&gt;
&lt;DIV class="text-pre my-2" style="font-size: 12.6px; line-height: 1.2; padding: 0px; white-space: pre; font-family: SFMono-Regular, Menlo, Monaco, Consolas, &amp;quot;Liberation Mono&amp;quot;, &amp;quot;Courier New&amp;quot;, monospace; margin: 0.5rem 0px 0.5rem 0px !important"&gt;Reply-Message = "Mac is empty" Proxy-State = 0x3834&lt;/DIV&gt;
&lt;/DIV&gt;
&lt;/DIV&gt;</description>
      <pubDate>Wed, 26 Jan 2022 22:26:04 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74009#M70</guid>
      <dc:creator>MLD</dc:creator>
      <dc:date>2022-01-26T22:26:04Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure radius authentication for EXOS switch management</title>
      <link>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74010#M71</link>
      <description>Connection Profile&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="d05fd36cabdc4d3fb6ddeac0d506c202.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/5037i1C9FADBDE528D5AE/image-size/large?v=v2&amp;amp;px=999" role="button" title="d05fd36cabdc4d3fb6ddeac0d506c202.png" alt="d05fd36cabdc4d3fb6ddeac0d506c202.png" /&gt;&lt;/span&gt;Authentication source&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="bc2cf807b0704c589aac8afafe366afb.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/4349iDE9FD176F671FD4D/image-size/large?v=v2&amp;amp;px=999" role="button" title="bc2cf807b0704c589aac8afafe366afb.png" alt="bc2cf807b0704c589aac8afafe366afb.png" /&gt;&lt;/span&gt;Auth source rule&lt;BR /&gt;&lt;span class="lia-inline-image-display-wrapper" image-alt="fc58552e9cb94f18a0ecdb84def0d084.png"&gt;&lt;img src="https://community.extremenetworks.com/t5/image/serverpage/image-id/1972i324426170CB051E5/image-size/large?v=v2&amp;amp;px=999" role="button" title="fc58552e9cb94f18a0ecdb84def0d084.png" alt="fc58552e9cb94f18a0ecdb84def0d084.png" /&gt;&lt;/span&gt;</description>
      <pubDate>Thu, 27 Jan 2022 10:46:58 GMT</pubDate>
      <guid>https://community.extremenetworks.com/t5/extremecloud-a3/how-to-configure-radius-authentication-for-exos-switch/m-p/74010#M71</guid>
      <dc:creator>OscarK</dc:creator>
      <dc:date>2022-01-27T10:46:58Z</dc:date>
    </item>
  </channel>
</rss>

