Security and authentication
11.2 RADIUS client
SCALANCE XM-400/XR-500 Command Line Interface (CLI)
Configuration Manual, 11/2015, C79000-G8976-C252-10
693
The RADIUS authentication is deactivated.
Note
The login is possible only with a local user name and password. If the local logon fails, there
is no authentication via a RADIUS server.
You enable the authentication via a RADIUS server with the login authentication
command.
radius authorization-mode
Description
With this command you specify for the login authentication how the rights are assigned to the
user with a successful authentication.
You are in the Global configuration mode.
The command prompt is as follows:
cli(config)#
Call up the command with the following parameters:
radius authorization-mode { standard | vendor-specific }
The parameters have the following meaning:
In this mode the user is logged in with administrator
rights if the server returns the value "Administrative
User" to the device for the attribute "Service Type". In
all other cases the user is logged in with read rights.
Default
In this mode the assignment of rights depends on
whether and which group the server returns for the
user and whether or not there is an entry for the user
in the table "External User Accounts".
-
The assignment of rights during the login authentication is defined.