Setup Authentication
3 min
Overview
Nile supports RADIUS for authentication. RADIUS (Remote Authentication Dial-In User Service) is a client-server protocol that enables remote access servers to communicate with a central server to authenticate dial-in users and authorize their access to the requested systems or services.
Prerequisites
- Ensure that you have defined the Service Areas.
- Ensure that you have the IP addresses of all RADIUS servers you plan to use in your enterprise.
- Ensure that there is a route between the RADIUS server and your core router/firewall that connects to the Nile Service Gateway.
- Identify the shared secret to be configured in the Nile Portal.
Configuring Authentication
- Log in to the Nile Portal. In the left navigation, select Network Setup > Authentication.
- Click the '+' sign under Authentication to add a RADIUS server. Configure the fields:
- Name: Enter a name for the RADIUS server.
- Port: Specify the port used by the RADIUS server.
- Geo Scope: Select the locations that will use this RADIUS server to authenticate clients.
- Host: Enter the IP address of the primary RADIUS server in Host 1. Use Host 2 and later for secondary servers (failover).
- Shared Secret: Enter the shared secret.
- Wired MAC Auth (optional): Select if the RADIUS server will authenticate wired devices using MAC Authentication Bypass (MAB).
- Guest Portal URL (optional): Enter a static URL for the RADIUS server’s guest portal. If left blank, Nile uses the dynamic URL returned by the RADIUS server.
- Click Save to complete configuration.