EasyManuals Logo

H3C S3100 Series User Manual

H3C S3100 Series
1057 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #449 background imageLoading...
Page #449 background image
2-35
z Change the server IP address, and the UDP port number of the authentication server to 127.0.0.1,
and 1645 respectively in the configuration step "Configure a RADIUS scheme" in section
Remote
RADIUS Authentication of Telnet/SSH Users
.
z Enable the local RADIUS server function, set the IP address and shared key for the network
access server to 127.0.0.1 and aabbcc, respectively.
z Configure local users.
HWTACACS Authentication and Authorization of Telnet Users
Network requirements
You are required to configure the switch so that the Telnet users logging into the switch are
authenticated and authorized by the TACACS server.
A TACACS server with IP address 10.110.91.164 is connected to the switch. This server will be used as
the authentication and authorization server. On the switch, set both authentication and authorization
shared keys that are used to exchange messages with the TACACS server to "aabbcc." Configure the
switch to strip domain names off user names before sending user names to the TACACS server.
Configure the shared key to “aabbcc” on the TACACS server for exchanging messages with the switch.
Network diagram
Figure 2-5 Remote HWTACACS authentication and authorization of Telnet users
Configuration procedure
# Add a Telnet user.
(Omitted here)
# Configure an HWTACACS scheme.
<Sysname> system-view
[Sysname] hwtacacs scheme hwtac
[Sysname-hwtacacs-hwtac] primary authentication 10.110.91.164 49
[Sysname-hwtacacs-hwtac] primary authorization 10.110.91.164 49
[Sysname-hwtacacs-hwtac] key authentication aabbcc
[Sysname-hwtacacs-hwtac] key authorization aabbcc
[Sysname-hwtacacs-hwtac] user-name-format without-domain
[Sysname-hwtacacs-hwtac] quit
# Configure the domain name of the HWTACACS scheme to hwtac.
[Sysname] domain hwtacacs
[Sysname-isp-hwtacacs] scheme hwtacacs-scheme hwtac

Table of Contents

Other manuals for H3C S3100 Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the H3C S3100 Series and is the answer not in the manual?

H3C S3100 Series Specifications

General IconGeneral
BrandH3C
ModelS3100 Series
CategorySwitch
LanguageEnglish

Related product manuals