To add the RADIUS server configuration in Manager, do the following:
Steps:
Select Manager → <Admin Domain Name> → Setup → GUI Access → RADIUS Authentication.
Note
To add a RADIUS server in the Central Manager, select Manager → Setup → GUI Access → RADIUS Authentication.
Click
.The Add a RADIUS Server page is displayed.
Select Yes next to Enable RADIUS Authentication?.
Type the RADIUS Server Name or IP Address (IPv4 or IPv6 address).
Caution
Only use a valid server name, since Trellix IPS does not check to see if the names are valid. A valid server name is the name of the host on which RADIUS server is configured.
Type the RADIUS Server Port. The port number should be between 0 and 65535. (default =1812).
Type a Shared Secret Key that is required on both the Manager and the RADIUS server. The Shared Secret key is same as entered in the RADIUS server during configuration.
Select the Connection Time Out (in milliseconds).
This time determines how long the Manager should wait for authentication. Three attempts are made to connect before timeout occurs, so the value you enter is how long Trellix IPS waits between attempts before timeout (default =6000 milliseconds).
(Optional) Click Test Connection to verify that the Manager can connect to the RADIUS server.
Note
If Manager Disaster Recovery (MDR) is enabled, both the Primary and Secondary Manager IP addresses must be registered in the RADIUS server.
Click Save to save your changes.
Note
If RADIUS servers are configured with Central Manager, and the RADIUS servers exist in private networks and Managers exist in public network, the RADIUS configuration needs to be customized at Manager in a way that it reaches the RADIUS Server through translated public IP address.