![3Com 4200G 12-Port Configuration Manual Download Page 188](http://html1.mh-extra.com/html/3com/4200g-12-port/4200g-12-port_configuration-manual_3430000188.webp)
174
C
HAPTER
23: AAA&RADIUS C
ONFIGURATION
AAA Configuration
The goal of AAA configuration is to protect network devices against unauthorized
access and at the same time provide network access services to legal users. If you
need to use ISP domains to implement AAA management on access users, you can
configure the ISP domains.
Configuration
Prerequisites
If you want to adopt remote AAA method, you must create a RADIUS scheme. You
can reference a configured RADIUS scheme in ISP domains to implement remote AAA
services. For the configuration of RADIUS scheme, refer to “RADIUS Configuration”.
Creating an ISP
Domain
Configuring the
Attributes of an ISP
Domain
Table 135
Create an ISP domain
Operation
Command
Description
Enter system view
system-view
—
Create an ISP domain and enter its
view, enter the view of an existing ISP
domain, or configure the default ISP
domain
domain
{
isp-name |
default
{
disable
|
enable
isp-name
}
}
Required
The default ISP domain
is “system”.
Table 136
Configure the attributes of an ISP domain
Operation
Command
Description
Enter system view
system-view
—
Create an ISP domain or enter the
view of an existing ISP domain
domain
isp-name
Required
Activate/deactivate the ISP
domain
state
{
active
|
block
}
Optional
By default, once an ISP
domain is created, it is
in the
active
state and
all the users in this
domain are allowed to
access the network.
Set the maximum number of
access users that can be contained
in the ISP domain
access-limit
{
disable
|
enable
max-user-number
}
Optional
After an ISP domain is
created, the number of
access users it can
contain is unlimited by
default.
Set the user idle-cut function
idle-cut
{
disable
|
enable
minute
flow
}
Optional
By default, user idle-cut
function is disabled.
Open/close the
accounting-optional switch
accounting
optional
Optional
By default, once an ISP
domain is created, the
accounting-optional
switch is closed.
Set the messenger function
messenger
time
{
enable
limit
interval
|
disable
}
Optional
By default, the
messenger function is
disabled.
Set the self-service server location
function
self-service-url
{
disable
|
enable
url-string
}
Optional
By default, the
self-service server
location function is
disabled.
Summary of Contents for 4200G 12-Port
Page 10: ...8 CONTENTS...
Page 14: ...4 ABOUT THIS GUIDE...
Page 46: ...32 CHAPTER 5 LOGGING IN THROUGH WEB BASED NETWORK MANAGEMENT SYSTEM...
Page 48: ...34 CHAPTER 6 LOGGING IN THROUGH NMS...
Page 60: ...46 CHAPTER 9 VLAN CONFIGURATION...
Page 64: ...50 CHAPTER 10 MANAGEMENT VLAN CONFIGURATION...
Page 80: ...66 CHAPTER 13 GVRP CONFIGURATION...
Page 98: ...84 CHAPTER 15 LINK AGGREGATION CONFIGURATION...
Page 112: ...98 CHAPTER 18 MAC ADDRESS TABLE MANAGEMENT...
Page 126: ...112 CHAPTER 19 LOGGING IN THROUGH TELNET...
Page 162: ...148 CHAPTER 20 MSTP CONFIGURATION...
Page 274: ...260 CHAPTER 29 IGMP SNOOPING CONFIGURATION...
Page 276: ...262 CHAPTER 30 ROUTING PORT JOIN TO MULTICAST GROUP CONFIGURATION...
Page 298: ...284 CHAPTER 33 SNMP CONFIGURATION...
Page 304: ...290 CHAPTER 34 RMON CONFIGURATION...
Page 338: ...324 CHAPTER 36 SSH TERMINAL SERVICES...
Page 356: ...342 CHAPTER 38 FTP AND TFTP CONFIGURATION...
Page 365: ...Information Center Configuration Example 351 S4200G terminal logging...
Page 366: ...352 CHAPTER 39 INFORMATION CENTER...
Page 378: ...364 CHAPTER 40 BOOTROM AND HOST SOFTWARE LOADING...
Page 384: ...370 CHAPTER 41 Basic System Configuration and Debugging...
Page 388: ...374 CHAPTER 43 NETWORK CONNECTIVITY TEST...
Page 406: ...392 CHAPTER 45 CONFIGURATION OF NEWLY ADDED CLUSTER FUNCTIONS...