АМАТЕК AN-SGM28P24-400 [178/322] User authentication method

АМАТЕК AN-SGM28P24-400 [178/322] User authentication method
177 / 322
loopback Accounting-Response
When the user does not want to use the Internet, notify the subscriber line, switch
Accounting-Request notify the authentication server end of billing, billing information is
encapsulated in this package, the authentication server to send Accounting-Response
11.2.3 User authentication method
There are three kinds of user authentication methods for RADIUS
PAP (Password Authentication Protocol). The user passes the user name and his
password to the switch in the form of plaintext. The switch passes the user name and
password to the RADIUS server through the RADIUS protocol package, and the
RADIUS server looks for the database. If there is the same user name and password, it
indicates that the authentication is passed, otherwise it indicates that the authentication
has not passed
CHAP (Challenge Handshake Authentication Protocol). When the user requests to
access the Internet, the switch generates a 16 byte random code to the user. The user
encrypts the random code, password, and other domains to generate a response, passing
the user name and response to the switch. The switch passes the user name, the response,
and the original 16 byte random code to the RADIUS server. According to the RADIU
username in the switch side search database, and end users use the same password
encryption, then encrypted based on random code to 16 bytes, and the results from the
response comparison showed that if the same is verified, if not the same that validation
failed
EAP (Extensible Authentication Protocol). With this verification method, the switch
doesn't really participate in the verification, and only plays the role of forwarding
between the user and the RADIUS server. When a user requests access, exchange
requests the user's user name, the user name and forwarded to the RADIUS server, the
RADIUS server generates a 16 byte random code to the user and stores the random code,
users to generate a random code, response encryption password and other domain, the
user name and the response to switch, switch forwarding to the RADIUS server.
According to the RADIU username in the switch side search database, and end users use
the same password encryption, and then encrypted according to random code stored 16
bytes, and the results from the response comparison showed that if the same is verified,
if not the same that validation failed
The authentication and billing solution of network adopts the method of EAP user

Содержание

Похожие устройства

Скачать
Случайные обсуждения