206
C
HAPTER
11: 802.1X C
ONFIGURATION
Table 224
Setting the Username Format Transmitted to the RADIUS Server
If a RADIUS scheme is configured not to allow usernames including ISP domain
names, the RADIUS scheme shall not be simultaneously used in more than one ISP
domain. Otherwise, the RADIUS server will regard two users in different ISP
domains as the same user by mistake, if they have the same username (excluding
their respective domain names.)
By default, the RADIUS scheme acknowledges that the username sent to it
includes the ISP domain name.
Setting the Unit of Data
Flow that Transmitted to
the RADIUS Server
The following command defines the unit of the data flow sent to RADIUS server.
Perform the following configurations in RADIUS Scheme View
Table 225
Setting the Unit of Data Flow Transmitted to the RADIUS Server
By default, the default data unit is byte and the default data packet unit is one
packet.
Configuring the Local
RADIUS Authentication
Server
RADIUS service adopts authentication/authorization/accounting servers to manage
users. Local authentication/authorization/accounting service is also used in these
products and it is called local RADIUS authentication server function.
Perform the following commands in System View to create/delete local RADIUS
authentication server.
Table 226
Creating/Deleting the Local RADIUS Authentication Server
By default, the IP address of the local RADIUS authentication server is 127.0.0.1
and the password is 3com.
1) When using local RADIUS server function of 3com, remember the number of
the UDP port used for authentication is 1645 and that for accounting is 1646.
2) The password configured by this command must be the same as that of the
RADIUS authentication/authorization packet configured by the command
key
authentication
in RADIUS Scheme View.
Operation
Command
Set Username Format Transmitted to
RADIUS Server
user-name-format { with-domain |
without-domain }
Operation
Command
Set the unit of data flow
transmitted to RADIUS
server
data-flow-format data { byte | giga-byte |
kilo-byte | mega-byte } packet { giga-byte |
kilo-byte | mega-byte | one-packet }
Restore the unit to the
default setting
undo data-flow-format
Operation
Command
Create the local RADIUS authentication
server
local-server nas-ip
ip_address
key
password
Delete the local RADIUS authentication
server
undo local-server nas-ip
ip_address
Summary of Contents for 400 Family
Page 12: ......
Page 16: ...14 ABOUT THIS GUIDE ...
Page 58: ...56 CHAPTER 2 PORT OPERATION ...
Page 68: ...66 CHAPTER 3 VLAN OPERATION ...
Page 98: ...96 CHAPTER 5 NETWORK PROTOCOL OPERATION ...
Page 124: ...122 CHAPTER 6 IP ROUTING PROTOCOL OPERATION ...
Page 156: ...154 CHAPTER 8 ACL CONFIGURATION ...
Page 218: ...216 CHAPTER 11 802 1X CONFIGURATION ...
Page 298: ...296 CHAPTER 13 PASSWORD CONTROL CONFIGURATION OPERATIONS ...
Page 336: ...334 APPENDIX B RADIUS SERVER AND RADIUS CLIENT SETUP ...