Zyxel ZyWALL 1100 [301/438] Ad server commands

Zyxel USG 1900 [301/438] Ad server commands
ZyWALL / USG (ZLD) CLI Reference Guide 301
CHAPTER 45
AAA Server
This chapter introduces and shows you how to configure the ZyWALL / USG to use external
authentication servers.
45.1 AAA Server Overview
You can use an AAA (Authentication, Authorization, Accounting) server to provide access control to
your network.
The following lists the types of authentication server the ZyWALL / USG supports.
•Local user database
The ZyWALL / USG uses the built-in local user database to authenticate administrative users
logging into the ZyWALL / USG’s web configurator or network access users logging into the
network through the ZyWALL / USG. You can also use the local user database to authenticate
VPN users.
Directory Service (LDAP/AD)
LDAP (Lightweight Directory Access Protocol)/AD (Active Directory) is a directory service that is
both a directory and a protocol for controlling access to a network. The directory consists of a
database specialized for fast information retrieval and filtering activities. You create and store
user profile and login information on the external server.
•RADIUS
RADIUS (Remote Authentication Dial-In User Service) authentication is a popular protocol used
to authenticate users by means of an external or built-in RADIUS server. RADIUS authentication
allows you to validate a large number of users from a central location.
45.2 Authentication Server Command Summary
This section describes the commands for authentication server settings.
45.2.1 ad-server Commands
The following table lists the ad-server commands you use to set the default AD server.
Table 176 ad-server Commands
COMMAND DESCRIPTION
show ad-server Displays the default AD server settings.
[no] ad-server basedn basedn Sets a base distinguished name (DN) for the default AD server. A base DN identifies
an AD directory. The no command clears this setting.

Содержание

Похожие устройства