WiNG How-To Guide RSA SecurID_Configuration
Components Used:
The information in this document is based on the following
hardware and software versions:
·
1 x RFS4000 Switch Controller running v4.1.0.0-042R.
·
1 x AP-7131 Standalone Access Point running v4.0.1.0-019R.
·
1 x Cisco Secure ACS Server v4.2 for Windows
(Build 124) with RSA Authentication Agent v6.1.3 (Build 195) installed.
·
1 x RSA SecurID 2.0 Appliance with
Authentication Manager v6.1.2 (Build 142) and Authentication Agent v6.1.
The following sections outline the configuration steps required
to enable SecurID authentication on a Motorola WLAN Switch Controller and
AP-51X1/AP-71X1 Standalone Access Point:
1)
SecurID Integrated RADIUS Servers
2)
Motorola WLAN Switch Controller
3)
Motorola AP-51X1/AP-71X1 Standalone Access Point
4)
802.1X / EAP Supplicants
Figure 3.0 provides a detailed topology of the hardware and
software components highlighted in section 2.2 that were used to created this
guide.
Cisco
Secure ACS 4.2 for Windows:
This section outlines how to configure the RSA SecurID
Authentication Manager and Cisco Secure ACS 4.2 server to authenticate users
from a Motorola RFSx0000 WLAN Switch Controller or AP-51X1/AP-71X1 Access
Point.
RSA SecurID Integration:
This section provides a step-by-step example for how to configure
an RSA SecurID server and Cisco Secure ACS server to communicate with each
other.
Prior to configuring the Cisco Secure ACS 4.2
server to integrate with RSA SecureID, the RSA Authentication Agent must be
installed on the same window machine as the Cisco Secure ACS server.
Enter the Hostname
and IP
Address of the Cisco Secure ACS server then select
the Agent
Type option Net OS Agent. Enable the option Open to All Locally Known Users
then click OK.
The will configure the RSA SecurID server to
communicate with the RSA Authentication Agent installed on the Cisco Secure ACS
server. The Agent Host record identifies the Cisco Secure ACS server within its
database and contains information about communication and encryption.
User Authentication:
This section provides a step-by-step example for how to configure
the Cisco Secure ACS server to forward unknown authentication requests and
specific user accounts to the RSA SecurID server.
Reference Documentation
Motorola RFS Series Wireless LAN
Switches WiNG System Reference Guide
|
|
RSA Security Implementation
Guides
|
|
RSA SecurID with Wireless LAN
Controllers and Cisco Secure ACS Example
|
|
0 nhận xét:
Post a Comment