RADIUS for User Authentication

(configured by support)Remote Authentication Dial In User Service (RADIUS) is a networking client/server protocol that runs in the application layer, using UDP as transport, and provides centralized Authentication, Authorization, and Accounting (AAA) management for computers to connect to and use a network service.

How does RADIUS work with EFT Arcus?

The user or device sends a request to EFT Arcus to gain access to a particular network resource, then EFT Arcus sends a RADIUS Access Request message to the RADIUS server, requesting authorization to grant access via the RADIUS protocol. The request may contain username, password, security certificate, network address, and IP/Port used to connect to EFT Arcus. RADIUS servers vary, but most can look up client information in text files, LDAP servers, or databases. The RADIUS server can respond with an Access Reject, Access Challenge, or Access Accept. If the RADIUS server responds with an Access Challenge, additional information is requested from the user or device, such as a secondary password.

In the Web Transfer Client, after the user authenticates with their EFT Arcus LDAP credentials, they are asked for their RADIUS/RSA SecurID authentication.

The diagram below provides a general overview of EFT configured with RADIUS.