User Management
1098
SonicOS 5.8.1 Administrator Guide
Step 38 Select the LDAP Relay tab.
Step 39 Select the Enable RADIUS to LDAP Relay checkbox to enable RADIUS to LDAP relay. The
RADIUS to LDAP Relay feature is designed for use in a topology where there is a central site
with an LDAP/AD server and a central SonicWALL security appliance with remote satellite sites
connected into it using SonicWALL security appliances that may not support LDAP. In that case
the central SonicWALL security appliance can operate as a RADIUS server for the remote
SonicWALL security appliances, acting as a gateway between RADIUS and LDAP, and relaying
authentication requests from them to the LDAP server.
Additionally, for remote SonicWALL security
appliances running non-enhanced firmware, with
this feature the central SonicWALL security appliance can return legacy user privilege
information to them based on user group memberships learned using LDAP. This avoids what
can be very complex configuration of an external RADIUS server such as IAS for those
SonicWALL security appliances.
Step 40 Under Allow RADIUS clients to connect via, select the relevant checkboxes and policy rules
will be added to allow incoming RADIUS requests accordingly. The options are:
–
Trusted Zones
–
WAN Zone
–
Public Zones
–
Wireless Zones
–
VPN Zone
Step 41 In the RADIUS shared secret field, enter a shared secret common to all remote SonicWALL
security appliances.