Specify the RADIUS Server Details
- Last Updated: June 11, 2025
- 3 minute read
- LoadMaster
- LoadMaster GA
- Documentation
To use the RADIUS Authentication and Authorization method, Session Management must be enabled. To enable Session Management, follow the steps below:
- In the main menu of the LoadMaster WUI, select Certificates & Security.
- Select the Enable Session Management check box.
- Enter User and Password details and click the Login button.
- In the main menu of the LoadMaster WUI, select Certificates & Security > Admin WUI Access.
When Session Management is enabled on the LoadMaster, follow the steps below to configure RADIUS authentication:
- In the main menu of the LoadMaster WUI, navigate to Certificates & Security > Remote Access.
- Click WUI Authorization Options.
- Enter the Radius Server IP address and Port.Note: IPv6 is not supported for RADIUS authentication.
- Select the Radius Authentication check box.
- Select the Radius Authorization check box.
- Click Radius Server.
- Enter the Shared Secret.Note: The Shared Secret should be the same as the one entered during the Add a RADIUS Client section.
- Click Set Secret.
- If necessary, fill out details for a Backup Radius Server.
- Enter the Revalidation Interval.
- Click the Set Interval button.
Note: The RADIUS authorization method can only be used if the RADIUS authentication method is selected.
Note: There is a Test AAA for User section at the bottom of this screen. When session management is enabled, you can enter a valid Username and Password to test.
- Decide whether or not to enable the Send NAS Identifier check box.
Note: If this check box is disabled (default), a NAS identifier is not sent to the RADIUS server. If it is enabled, a Network Access Server (NAS) identifier string is sent to the RADIUS server. By default, this is the hostname. Alternatively, if a value is specified in the RADIUS NAS Identifier text box, this value is used as the NAS identifier. If the NAS identifier cannot be added, the RADIUS access request is still processed.
- If you enabled the Send NAS Identifier check box, decide whether or not to specify the RADIUS NAS Identifier.Note: If the Send NAS Identifier check box is selected, the RADIUS NAS Identifier field is shown. When specified, this value is used as the NAS identifier. Otherwise, the hostname is used as the NAS identifier. If the NAS identifier cannot be added, the RADIUS access request is still processed.
- Decide whether or not to enable the Send Vendor Specific check box.
Note: When this is enabled and a user is logging into the LoadMaster UI using RADIUS authentication with Cisco Access Control Server (ACS) or Identity Services Engine (IDE), the LoadMaster sends an Attribute Value Pair (AVP) to the server as part of the login request which contains Progress Kemp's vendor ID. The server can use this AVP upon receipt to identify the LoadMaster device. The format and requirements for this attribute are in Section 5.26 of RFC 2865. The Progress Kemp vendor ID is 12196.