Send documentation comments to mdsfeedback-doc@cisco.com
41-7
Cisco MDS 9000 Family Fabric Manager Configuration Guide
OL-17256-03, Cisco MDS NX-OS Release 4.x
Chapter 41 Configuring RADIUS and TACACS+
Configuring RADIUS Server Monitoring Parameters
Figure 41-2 Switch Authorization and Authentication Flow
Note No more server groups left = no response from any server in all server groups.
No more servers left = no response from any server within this server group.
Configuring RADIUS Server Monitoring Parameters
Cisco MDS 9000 Family switches can use the RADIUS protocol to communicate with remote AAA
servers. You can configure multiple RADIUS servers and server groups and set timeout and retry counts.
RADIUS is a distributed client/server protocol that secures networks against unauthorized access. In the
Cisco implementation, RADIUS clients run on Cisco MDS 9000 Family switches and send
authentication requests to a central RADIUS server that contains all user authentication and network
service access information.
This section defines the RADIUS operation, identifies its network environments, and describes its
configuration possibilities.
Accept
Access
permitted
Incoming
access
request to
switch
No
response
Failure
Access
permitted
Local
Success
Denied
access
No more
servers left
Remote
Found a
RADIUS server
105229
Incoming
access
request to
switch
RADIUS
Lookup
First or
next server
lookup
Local
database
lookup
Start