Chapter 55 AAA Server
ZyWALL Series CLI Reference Guide
478
55.2.7 aaa group server radius Commands
The following table lists the aaa group server radius commands you use to configure a group of
RADIUS servers.
[no] server password password
Sets the bind password (up to 15 characters). The no command
clears this setting.
[no] server port port_no
Sets the LDAP port number. Enter a number between 1 and
65535. The default is 389. The
no command clears this setting.
[no] server search-time-limit
time
Sets the search timeout period (in seconds). Enter a number
between 1 and 300. The no command clears this setting and set
this to the default setting of 5 seconds.
[no] server ssl
Enables the Zyxel Device to establish a secure connection to the
LDAP server. The no command disables this feature.
Table 272 aaa group server ldap Commands (continued)
COMMAND DESCRIPTION
Table 273 aaa group server radius Commands
COMMAND DESCRIPTION
clear aaa group server radius
group-name
Deletes all RADIUS server groups or the specified RADIUS server
group.
Note: You can NOT delete a server group that is currently
in use.
show aaa group server radius
group-name
Displays the specified RADIUS server group settings.
[no] aaa group server radius
group-name
Sets a descriptive name for the RADIUS server group. The no
command deletes the specified server group.
aaa group server radius rename
{group-name-old} group-name-new
Sets the server group name.
aaa group server radius group-name
Enter the sub-command mode.
[no] case-sensitive
Specify whether or not the server checks the username case. Set
this to be the same as the server’s behavior.
[no] server description
description
Sets the descriptive information for the RADIUS server group. You
can use up to 60 printable ASCII characters. The
no command
clears the setting.
[no] server group-attribute
<1-255>
Sets the value of an attribute that the Zyxel Device is used to
determine to which group a user belongs.
This attribute’s value is called a group identifier. You can add ext-
group-user user objects to identify groups based on different
group identifier values.
For example, you could configure attributes 1,10 and 100 and
create a ext-group-user user object for each of them. The
no
command clears the setting.
[no] server host
radius_server
Enter the IP address (in dotted decimal notation) or the domain
name of a RADIUS server to add to this server group. The
no
command clears this setting.