Configuring RADIUS Attributes
In this field...
Do this...
Remote Desktop
Select this option to allow all users authenticated by the RADIUS
server to log on to the my.firewall portal, view the Active Computers
Access
page, and remotely access computers' desktops, using the Remote
Desktop feature.
Note: Authenticated users can perform these actions, even if their level
of administrative access is "No Access".
For information on Remote Desktop, see Using Remote Desktop on
page 411.
Configuring RADIUS Attributes
To define a timeout for Secure HotSpot sessions
Set the Session-Timeout Attribute (attribute 27) to the number of seconds after which users
should be automatically logged off from the hotspot.
To assign permissions to specific RADIUS-authenticated users
1. Create a remote access policy as follows:
a) Assign the policy's VSA (attribute 26) the SofaWare vendor code (6983).
b) For each permission you want to grant, configure the relevant attribute of the VSA with the
desired value, as described in the following table.
For example, to assign the user VPN access permissions, set attribute number 2 to ―true‖.
2. Assign the policy to the desired user or user group.
For detailed instructions and examples, refer to the "Configuring the RADIUS Vendor-Specific Attribute"
white paper.
408
Nokia IP60 Security Appliance User Guide