60 CHAPTER 3: C ONFIGURING WIRELESS SERVICESConfigure Attributes on the RADIUS Server To authenticate users,you will need to configure users either in the local database or on RADIUSservers. To configure services for Employee access, the following itemsshould be configured on the RADIUS server.To configure the RADIUS server1 Configure RADIUS server to perform 802.1X using the recommendedEAP method PEAP + MSCHAPV2.2 Setup each WX switch as a RADIUS client.3 Define any desired 3Com vendor-specific attributes (VSAs) in the RADIUSserver’s dictionary.The vendor-specific attributes (VSAs) created by 3Com are embeddedaccording to the procedure recommended in RFC 2865, with Vendor-IDset to 14525. Table 10 describes the 3Com VSAs, listed in order byvendor type number.Table 10 3Com VSAsAttribute TypeRcv inAccessResp?Sent inAccessReqst?Sent inAcctReqst? DescriptionVLAN-Name 26, 43, 2 Yes No Yes Name of the VLAN towhich the client belongs.Mobility-Profile26, 43, 3 Yes No No Name of the MobilityProfile used by theauthorized client.Encryption-Type26, 43, 4 Yes No No Type of encryption usedto authenticate the client.Time-Of-Day 26, 43, 5 Yes No No Day(s) and time(s) duringwhich a user can log intothe network.SSID 26, 43, 6 Yes No Yes Name of the SSID youwant the user to use. TheSSID must be configuredin a service profile, andthe service profile must beused by a radio profileassigned to 3Com radiosin the Mobility Domain.