AAA and RADIUS Protocol Configuration
209
AAA and RADIUS
Protocol Configuration
Example
For the hybrid configuration example of AAA/RADIUS protocol and 802.1X
protocol, refer to
“802.1X Configuration Example”
on
page 190
.
Configuring the FTP/Telnet User Authentication at a Remote RADIUS
Server
Configuring Telnet user authentication at the remote server is similar to
configuring FTP users. The following description is based on Telnet users.
Networking Requirements
In
Figure 55
, it is required to configure the remote
RADIUS authentication of Telnet users.
One RADIUS server (as authentication server) is connected to the Switch and the
server IP address is 10.110.91.146. The password for exchanging messages
between the Switch and the authentication server is "expert”. The Switch cuts off
the domain name from username and sends the remaining part to the RADIUS
server.
Display related information of the local user
display local-user [ domain
isp_name
| idle-cut { disable |
enable } | service-type { telnet |
ftp | lan-access | ssh | terminal }
| state { active | block } |
user-name
user_name
| vlan
vlan_id
]
Display the statistics of local RADIUS
authentication server
display local-server statistics
Display the configuration information of all
the RADIUS schemes or a specified one
display radius [
radius_scheme_name
]
Display the statistics of RADIUS packets
display radius statistics
Display the stopping accounting requests
saved in buffer without response (from
System View)
display stop-accounting-buffer {
radius-scheme
radius_scheme_name
|
session-id
session_id
| time-range
start_time stop_time
| user-name
user_name
}
Delete the stopping accounting requests
saved in buffer without response (from
System View)
reset stop-accounting-buffer {
radius-scheme
radius_scheme_name
|
session-id
session_id
| time-range
start_time stop_time
| user-name
user_name
}
Clear stop-accounting packets from the
buffer
reset stop-accounting-buffer {
radius-scheme
radius_scheme_name
|
session-id
session_id
| time-range
start_time stop_time
| user-name
user_name
}
Reset the statistics of RADIUS server
reset radius statistics
Enable RADIUS packet debugging
debugging radius packet
Disable RADIUS packet debugging
undo debugging radius packet
Enable debugging of local RADIUS scheme
debugging local-server { all |
error | event | packet }
Disable debugging of local RADIUS scheme
undo debugging local-server { all |
error | event | packet }
Operation
Command
Summary of Contents for 400 Family
Page 12: ......
Page 16: ...14 ABOUT THIS GUIDE ...
Page 58: ...56 CHAPTER 2 PORT OPERATION ...
Page 68: ...66 CHAPTER 3 VLAN OPERATION ...
Page 98: ...96 CHAPTER 5 NETWORK PROTOCOL OPERATION ...
Page 124: ...122 CHAPTER 6 IP ROUTING PROTOCOL OPERATION ...
Page 156: ...154 CHAPTER 8 ACL CONFIGURATION ...
Page 218: ...216 CHAPTER 11 802 1X CONFIGURATION ...
Page 298: ...296 CHAPTER 13 PASSWORD CONTROL CONFIGURATION OPERATIONS ...
Page 336: ...334 APPENDIX B RADIUS SERVER AND RADIUS CLIENT SETUP ...