
Authentication for a WM-AD
Summit WM-Series WLAN Switch and Altitude Access Point Software Version 1.0 User Guide
77
Vendor Specific Attributes (VSAs)
In addition to the standard RADIUS message, you can include Vendor Specific Attributes (VSAs). The
Summit WM-Series Switch Software authentication mechanism provides six Vendor Specific Attributes
(VSAs), for RADIUS and other authentication mechanisms.
The first five of these VSAs provide information about the identify of the specific Altitude AP that is
handling the wireless device, enabling the provision of location-based services.
The RADIUS message also includes RADIUS attributes “Called-Station-Id” and “Calling-Station-Id” in
order to include the MAC address of the wireless device.
Authentication for a WM-AD for Captive Portal
For Captive Portal authentication, the wireless device connects to the network, but can only access the
specific network destinations defined in the Non-Authenticated Filter (see “The non-authenticated filter
for Captive Portal” on page 87). One of these destinations should be a server (internal) that presents a
web page logon screen (the Captive Portal). The wireless device user must input an ID and a Password.
This request for authentication is sent by the Summit WM-Series Switch to a RADIUS server or other
authentication server. Based on the permissions returned from the authentication server, the Summit
WM-Series Switch implements policy and allows the appropriate network access.
There are three mechanisms by which Captive Portal authentication can be carried out:
● internal Captive Portal: the Summit WM-Series Switch presents the Captive Portal webpage, carries
out the authentication and implements policy
Captive Portal authentication relies on a RADIUS server on the enterprise network.
Table 5: Vendor Specific Attributes in RADIUS
VSA Attribute Name Attribute # Comment
AP-Name 1 Name of Altitude AP as specified in the AP Properties screen
AP-Serial 2 Altitude AP Serial number from manufacturing
AP-Radio 3 The Altitude AP radio type the client has connected to
WM-AD-Name 4 The WM-AD that the user associated with
SSID 5 Value of SSID that the user associated with
URL-Redirection 6 Provides the specific URL that the user will be redirected to
Commentaires sur ces manuels