Create a RADIUS logon procedure

  1. Login to the DualShield management console
  2. In the main menu, select "Authentication | Logon Procedure"
  3. Click the "Create" button on the toolbar
  4. Enter "Name" and select "RADIUS" as the Type



  5. Click "Save"
  6. Click the Context Menu icon of the newly create logon procedure, select "Logon Steps"
  7. In the popup windows, click the "Create" button on the toolbar
  8. Select the desired authentication method, e.g. "Static Password + One-Time Password"



  9. Click "Save"

Create a RADIUS application

  1. In the main menu, select "Authentication | Applications"
  2. Click the "Create" button on the toolbar
  3. Enter "Name"
  4. Select "Realm"
  5. Select the logon procedure that was just created



  6. Click "Save"
  7. Click the context menu of the newly created application, select "Agent"



  8. Select the DualShield Radius server, e.g. "Local Radius Server"
  9. Click "Save"
  10. Click the context menu of the newly created application, select "Self Test"

Register the Juniper SA as a Radius client

  1. In the main menu, select "RADIUS | Clients"
  2. Click the "Register" button on the toolbar



  3. Select the application that was created in the previous steps
  4. Enter Juniper SA's IP in the IP address
  5. Enter the Shared Secret which will be used in Juniper.
  6. Click "Save"

Register the DualShield RADIUS server

Log into the Juniper SA Administrator Console. The administrator console can be reached via a web browser, e.g. https://juniper.deepnetlabs.com/admin

  1. Click "Auth.Servers" in the "Authentication" section

    (Classic UI)

    (New UI)

  2. Select "Radius Server" in the dropdown list, and click "New Server"
  3. Populate the fields

(Classic UI)


(New UI)


Name

a label for the DualShield RADIUS server

Radius Server

IP address or the FQDN of the DualShield RADIUS server

Authentication Port

Authentication Port of the DualShield RADIUS server

Accounting Port

Accounting port of the the DualShield RADIUS server

Share Secret

The Shared Secret set up in the DualShield Radius client