Applies To:
Show Versions
BIG-IQ Centralized Management
- 6.0.1
RADIUS User Authentication
Use my RADIUS server to authenticate BIG-IQ users
F5 BIG-IQ Centralized Management can verify user credentials against your company's RADIUS server. After you set up BIG-IQ to use your RADIUS server, you can add users and user groups authorized by that server.
Before integrating BIG-IQ with your RADIUS server for authentication and authorization
Before you set up BIG-IQ Centralized Management for authentication and authorization with your RADIUS server, gather the following information.
Required Information | This is |
---|---|
Name | The name of your RADIUS server. |
Host | The IP address or host name of your RADIUS server. |
Port | The port number of your RADIUS server. |
Secret | The case-sensitive text string used to validate communication. |
Test user name and password | A user name and password, authenticated on your RADIUS server. |
Key and Value properties for your RADIUS server | The RADIUS server uses this for authentication and encryption. |
Set up BIG-IQ to use my RADIUS server for user authentication
You can set up BIG-IQ to use your company's RADIUS server. You can add two additional backup RADIUS servers in case the primary server is not available for authentication.
Add a user authenticated by my RADIUS server and associate it with a role
Once you understand exactly who you want to perform certain tasks, you can provide them access to particular areas of BIG-IQ by adding them as a user and assigning the appropriate built-in or custom role. You can assign as many roles as required to cover the user's responsibilities.
For the RADIUS-authenticated user to access BIG-IQ, you must put the local user in a BIG-IQ role, or put in a role a local group mapped to one of the user’s groups on the RADIUS server.
Create a RADIUS-authenticated user group
Before you can add a RADIUS-authenticated user group, you must set up BIG-IQ to use your company's RADIUS server for user authentication on the
screen.