Configuring an RFC 3576 Server

You can configure a RADIUS Remote Authentication Dial-In User Service. An Industry-standard network access protocol for remote authentication. It allows authentication, authorization, and accounting of remote users who want to access network resources.  server to send user disconnect, CoA Change of Authorization. The RADIUS CoA is used in the AAA service framework to allow dynamic modification of the authenticated, authorized, and active subscriber sessions. , and session timeout messages as described in RFC Request For Comments. RFC is a commonly used format for the Internet standards documentss. 3576, “Dynamic Authorization Extensions to Remote Dial In User Service (RADIUS).”

To configure an RFC 3576 server, complete the following procedure:

1. To configure a Branch Gateway group or Branch Gateway, complete either one of these steps:

  • To select a gateway group:

    1. In the HPE Aruba Networking Central app, set the filter to a group that contains at least one Branch Gateway.

      The dashboard context for a group is displayed.

    2. Under Manage, click Devices > Gateways.

      A list of gateways is displayed in the List view.

    3. Click Config.

      The configuration page is displayed for the selected group.

  • To select a gateway:

    1. In the HPE Aruba Networking Central app, set the filter to Global or a group that contains at least one Branch Gateway.

    2. Under Manage, click Devices > Gateways.

      A list of gateways is displayed in the List view.

    3. Click a gateway under Device Name.

      The dashboard context for the gateway is displayed.

    4. Under Manage, click Device.

      The gateway device configuration page is displayed.

2. If you are in the Basic Mode, click Advanced Mode to access the advanced configuration options.

3. Click Security> Auth servers.

4. Click the icon in the All servers table to add a new server.

The New server pop-up window is displayed.

5. Select RFC 3576 from the Type drop-down list.

6. Enter the IP address / hostname for the new server.

7. Enter the server authentication key into the Key and Retype key fields.

8. Click Save.

9. To edit the server authentication key, select the name of the new RFC 3576 server from the All servers table.

10. Enter the key in the Key and Retype key fields.

11. Select the Enable radsec check box to enable the RadSec protocol for transporting RADIUS packets through TCP Transmission Control Protocol. TCP is a communication protocol that defines the standards for establishing and maintaining network connection for applications to exchange data. .

12. Click Save Settings.

The following animation shows you how to configure an RFC 3576 server.