In this section, you can add local users as well as temporarily disable or re-enable them.
The required settings for creating a local user are the username and login. The rest of the settings are optional, but for correct identification, the following must be provided:
-
Login and password --- for identification using a name and password. In this case, you will need to configure the captive portal where a user can enter their login name and password for authentication.
-
IP address, IP address range, or MAC address --- for identification using a combination of MAC and IP addresses. Here you need to make sure that the user always accesses the network from the specified MAC and/or IP address.
-
VLAN ID --- for identification using a VLAN tag. In this case, you need to make sure that the user always accesses the network from the specified VLAN.
-
Email: the user's email address. If specified, this can be used to send information, such as a 2nd authentication factor, to the user by email.
-
Phones: the user's phone numbers. If specified, this can be used to send information, such as a 2nd authentication factor, to the user by SMS.
If both login/password and IP/MAC/VLAN addresses are specified for the user, the system uses address-based identification. In other words, address-based identification takes priority.
LDAP user accounts are not displayed here, but these users can also be used in security policies.