DSM Version
7.4 7.3 7.2

RADIUS Server

Authentication and Authorization

  • Provides centralized authentication, authorization, and account management for wired or wireless network access.
  • Translates account names in accordance with authentication sources to which the server is appointed.
  • Provides access control to block unauthorized network access.
  • Supported authentication protocols: EAP-MSCHAPv2, EAP-TTLS, MS-CHAP, PAP, and PEAP.
  • Supports multiple types of user authentication:
    • Local users only
    • LDAP users only
    • Domain users only
    • Local users and LDAP users
    • Local users and domain users
  • Supports various delimiters for distinguishing account types (local users have the highest priority when there are duplicate usernames):
    • @: LDAP or domain users
    • \ : Domain users
    • No delimiters: Local, LDAP, or domain users

Auditing

  • Logs events to ensure connection monitoring.
  • Supports exporting logs in HTML format.

Limitations

  • Client names must be between 1 and 32 Unicode characters.
  • Client names do not support special characters: !"#$%&'()*+-,/:;<=>?@[]\^`{}|~