EasyManua.ls Logo

3Com 4210 PWR - Page 256

3Com 4210 PWR
567 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Loading...
254 CHAPTER 21: AAA CONFIGURATION
n
Actually, the RADIUS service configuration only defines the parameters for
information exchange between switch and RADIUS server. To make these
parameters take effect, you must reference the RADIUS scheme configured with
these parameters in an ISP domain view (refer to
“AAA Configuration Task List”
on page 245).
Creating a RADIUS
Scheme
The RADIUS protocol configuration is performed on a RADIUS scheme basis. You
should first create a RADIUS scheme and enter its view before performing other
RADIUS protocol configurations.
n
A RADIUS scheme can be referenced by multiple ISP domains simultaneously.
Configuring RADIUS
Authentication/Authoriz
ation Servers
n
The authentication response sent from the RADIUS server to the RADIUS client
carries authorization information. Therefore, you need not (and cannot) specify
a separate RADIUS authorization server.
Tabl e 190 Create a RADIUS scheme
Operation Command Remarks
Enter system view system-view -
Enable RADIUS authentication
port
radius client enable Optional
By default, RADIUS
authentication port is
enabled.
Create a RADIUS scheme and
enter its view
radius scheme
radius-scheme-name
Required
By default, a RADIUS scheme
named "system" has already
been created in the system.
Tabl e 191 Configure RADIUS authentication/authorization servers
Operation Command Remarks
Enter system view system-view -
Create a RADIUS scheme and
enter its view
radius scheme
radius-scheme-name
Required
By default, a RADIUS scheme
named "system" has already
been created in the system.
Set the IP address and port
number of the primary
RADIUS
authentication/authorization
server
primary authentication
ip-address [ port-number ]
Required
By default, the IP address and
UDP port number of the
primary server are 0.0.0.0 and
1812 respectively for a newly
created RADIUS scheme.
Set the IP address and port
number of the secondary
RADIUS
authentication/authorization
server
secondary authentication
ip-address [ port-number ]
Optional
By default, the IP address and
UDP port number of the
secondary server are 0.0.0.0
and 1812 respectively for a
newly created RADIUS
scheme.

Table of Contents

Related product manuals