EasyManuals Logo

H3C S5120-SI Series User Manual

H3C S5120-SI Series
697 pages
To Next Page IconTo Next Page
To Next Page IconTo Next Page
To Previous Page IconTo Previous Page
To Previous Page IconTo Previous Page
Page #413 background imageLoading...
Page #413 background image
1-32
[Switch-ui-vty0-4] protocol inbound ssh
[Switch-ui-vty0-4] quit
# Create RADIUS scheme rad.
[Switch] radius scheme rad
# Specify the primary authentication server.
[Switch-radius-rad] primary authentication 10.1.1.1 1812
# Specify the primary accounting server.
[Switch-radius-rad] primary accounting 10.1.1.1 1813
# Set the shared key for authentication packets to expert.
[Switch-radius-rad] key authentication expert
# Set the shared key for accounting packets to expert.
[Switch-radius-rad] key accounting expert
# Specify that a username sent to the RADIUS server carries the domain name.
[Switch-radius-rad] user-name-format with-domain
# Specify the service type for the RADIUS server, which must be extended when the RADIUS server
runs iMC.
[Switch-radius-rad] server-type extended
[Switch-radius-rad] quit
# Configure the AAA methods for the domain.
[Switch] domain bbb
[Switch-isp-bbb] authentication login radius-scheme rad
[Switch-isp-bbb] authorization login radius-scheme rad
[Switch-isp-bbb] accounting login radius-scheme rad
[Switch-isp-bbb] quit
When using SSH to log in, a user enters a username in the form userid@bbb for authentication using
domain bbb.
3) Verify the configuration
After the above configuration, the SSH user should be able to use the configured account to access the
user interface of the switch. The commands that the user can access depend on the settings for EXEC
users on the iMC server.
Troubleshooting AAA
Troubleshooting RADIUS
Symptom 1: User authentication/authorization always fails.
Analysis:
1) A communication failure exists between the NAS and the RADIUS server.
2) The username is not in the format of userid@isp-name or no default ISP domain is specified for the
NAS.
3) The user is not configured on the RADIUS server.
4) The password of the user is incorrect.

Table of Contents

Other manuals for H3C S5120-SI Series

Questions and Answers:

Question and Answer IconNeed help?

Do you have a question about the H3C S5120-SI Series and is the answer not in the manual?

H3C S5120-SI Series Specifications

General IconGeneral
BrandH3C
ModelS5120-SI Series
CategorySwitch
LanguageEnglish

Related product manuals