Previous Topic: How to Authenticate Users in a Homogeneous RADIUS Environment

Next Topic: Set Up the User Directory

Define the RADIUS Agent

In this example, only one RADIUS Agent will be defined, and it will protect only one domain. However, if the NAS device, such as a proxy server, services multiple domains, configure the Agent with a realm hint.

To define the RADIUS Agent

  1. Start the Policy Server User Interface.
  2. In the System tab, right click Agent and select Create Agent.

    The SiteMinder Agent Dialog box appears, as shown in the following graphic.

  3. In the Name field, enter the name of the Agent.

    Use a name that is intuitive, such as the name of the NAS device.

  4. Optionally, in the Description field, enter a description of the Agent, such as its purpose.
  5. In the Agent Type group box, do the following:
    1. Select the RADIUS radio button.
    2. Select the appropriate vendor name from the drop-down list, such as Cisco.
  6. In the IP Address field, enter the IP address of the NAS device.

    Use the DNS Lookup button to search for an IP address using a hostname.

  7. In the Shared Secret group box, do the following:
    1. In the Secret field, enter the secret that is used by the NAS device.

      The secret is used by the Policy Server to authenticate requests from a NAS. Depending on the type of NAS device you are using, there may be some restrictions on the number of characters you can use; however, SiteMinder supports the RADIUS protocol specification which allows for 0-128 characters to be used in a shared secret.

      see your NAS device product documentation for more information.

    2. In the Confirm Secret field, re-enter the secret.
  8. In the Realm Hint Attribute field, enter one of the following:
  9. Click OK to save the settings and exit the dialog box.

    The RADIUS Agent definition is added to the Agent List.

More information:

Use Realm Hints