3Com Switch 8800 Configuration Guide
Table of Contents
TOC-15
40.2 AAA Configuration ......................................................................................................... 40-6
40.2.1 Creating/Deleting an ISP Domain ....................................................................... 40-6
40.2.2 Configuring Relevant Attributes of an ISP Domain ............................................. 40-7
40.2.3 Configuring Self-Service Server URL ................................................................. 40-8
40.2.4 Creating/Deleting a Local User ........................................................................... 40-9
40.2.5 Setting the Attributes of a Local User ............................................................... 40-10
40.2.6 Disconnecting a User by Force ......................................................................... 40-11
40.2.7 Configuring Dynamic VLAN Delivering ............................................................. 40-11
40.3 Configuring RADIUS Protocol...................................................................................... 40-12
40.3.1 Creating/Deleting a RADIUS scheme ............................................................... 40-13
40.3.2 Setting IP Address and Port Number of a RADIUS Server .............................. 40-13
40.3.3 Setting the RADIUS Packet Encryption Key ..................................................... 40-15
40.3.4 Setting the Response Timeout Timer of a RADIUS Server .............................. 40-16
40.3.5 Setting the Retransmission Times of RADIUS Request Packets ..................... 40-16
40.3.6 Enabling the Selection Of Radius Accounting Option....................................... 40-17
40.3.7 Setting a Real-time Accounting Interval............................................................ 40-17
40.3.8 Setting the Maximum Times of Real-time Accounting Request Failing to be
Responded ................................................................................................................... 40-18
40.3.9 Enabling/Disabling Stopping Accounting Request Buffer ................................. 40-19
40.3.10 Setting the Maximum Retransmitting Times of Stopping Accounting Request40-19
40.3.11 Setting the Supported Type of RADIUS Server .............................................. 40-20
40.3.12 Setting RADIUS Server State ......................................................................... 40-20
40.3.13 Setting the Username Format Transmitted to RADIUS Server ...................... 40-21
40.3.14 Setting the Unit of Data Flow that Transmitted to RADIUS Server................. 40-21
40.3.15 Creating/Deleting a Local RADIUS authentication Server.............................. 40-22
40.4 Configuring Protocol .................................................................................. 40-22
40.4.1 Creating a HWTACAS Scheme ........................................................................ 40-23
40.4.2 Configuring Authentication Servers................................................. 40-23
40.4.3 Configuring Authorization Servers .................................................. 40-24
40.4.4 Configuring Accounting Servers and the Related Attributes........... 40-25
40.4.5 Configuring the Source Address for Packets Sent by NAS ............ 40-26
40.4.6 Setting a Key for Securing the Communication with TACACS Server ............. 40-26
40.4.7 Setting the Username Format Acceptable to the TACACS Server................... 40-26
40.4.8 Setting the Unit of Data Flows Destined for the TACACS Server..................... 40-27
40.4.9 Setting Timers Regarding TACACS Server ...................................................... 40-27
40.5 Displaying and Debugging AAA and RADIUS Protocol .............................................. 40-29
40.6 AAA and RADIUS/ Protocol Configuration Examples................................. 40-30
40.6.1 Configuring Authentication at Remote RADIUS Server .................................... 40-30
40.6.2 Configuring Authentication at Local RADIUS Authentication Server ................ 40-32
40.6.3 Configuring Authentication at Remote TACACS Server ................................... 40-32
40.7 Troubleshooting AAA and RADIUS/ ........................................................... 40-34