RADIUS Authentication and Accounting
Configuring a RADIUS Server To Specify Per-Port CoS and Rate-Limiting Services
rate- l
i i
50 i i
80
fiel
i
i
limi
Disabled indicates that there is no default
imit configured for the port. No-
override ndicates that there s currently no
RADIUS-imposed rate-limit on the
associated ports.
The n the Limit field ind cates that the
most recent rate-limit configured in the
switch for this port is 50% of the port’s
available bandwidth. The in the Radius
Override d indicates that there is an
active client session n which the RADIUS
server used to authenticate the most recent
client has imposed an nbound bandwidth
t of 80%. Refer to the Note on page 6-24.
Figure 6-8. Example of Displaying Inbound Rate-Limiting Imposed by a RADIUS Session
indi
3
l l
l
indi
The DSCP i
i i i i
Di 2 Priority
i i
5
i i i
Note l
Priority in the Apply Rule column
cates a non-default CoS
(802.1p) priority configured in the
switch for port B1. The in the
Priority co umn shows the actua
va ue configured. No-override
cates that there is currently no
RADIUS-imposed CoS priority
affecting the port.
DSCP in the Apply Rule column and the 001010 in the column ind cate
a non-default CoS (802.1p) pr or ty conf gured n the switch for packets with a
ffserv codepoint of 001010 inbound on port B4. The in the column
shows the CoS pr or ty most recently configured for application to packets with
that codepoint. The in the Radius Override column indicates that there is
currently at least one authenticated-client session on port B4, and that the most
recent RADIUS- mposed CoS prior ty for the port is 5, which overr des the
configured DSCP setting. Refer to the , be ow.
Figure 6-9. Example of Displaying Inbound CoS (802.1p) Priority Imposed by a RADIUS Session
Note Where multiple clients are currently authenticated on a given port where
inbound CoS and Rate-Limiting values have been imposed by a RADIUS
server, the port operates with the inbound CoS priority and rate-limit assigned
by RADIUS for the most recently authenticated client. Any earlier CoS or rate-
limit values on the same port for authenticated client sessions that are still
active are overwritten by the most recent RADIUS-imposed values. For exam
-
6-24