The Device Authentication Settings allows you to select a Radius server used to authenticate a user.
To configure the Authentication Settings for a Profile:
- Log in to VMware SD-WAN Orchestrator, and then go to Configure > Profiles.
- Either click the Device icon next to the profile for which you want to configure the Authentication Settings, or click the link to the Profile, and then go to the Device tab.
- In the Authentication Settings area, from the RADIUS Server drop-down list, select the Radius server that you want to use for authentication.
Note: Configure the Radius server in the Authentication Services area in the Network Services page. Alternatively, you can configure a new authentication service by selecting the New Authentication Service... option from the RADIUS Server drop-down list. For instructions about how to configure Authentication Services, see Configure Authentication Services.
At the Edge-level, you can choose to override the Authentication Settings configured for the Profile.
- Log in to VMware SD-WAN Orchestrator, and then go to Configure > Edges.
- Either click the Device icon next to the Edge for which you want to override the Authentication Settings, or click the link to the Edge, and then go to the Device tab.
- In the Authentication Settings area, select the Enable Edge Override check box, and then expand the area.
- From the RADIUS Server drop-down menu, select the Radius server that you want to use for authentication.
- From the Source Interface drop-down list, select an Edge interface that is configured for the segment. This interface is the source IP for the Authentication Service.
Note:
- The default value is Auto, which allows the Edge to automatically select the available interfaces on the global segment, in a specific order.
- When the Edge transmits the traffic, the packet header contains the IP address of the selected source interface, whereas the packets can be sent through any interface based on the destination route.
- Click Save Changes.