
526
C
HAPTER
49: AAA & RADIUS & HWTACACS C
ONFIGURATION
c
CAUTION:
■
The authentication response sent from the RADIUS server to the RADIUS client
carries the authorization information. Therefore, no separate authorization
server can be specified.
■
In an actual network environment, you can either specify two RADIUS servers
as the primary and secondary authentication/authorization servers respectively,
or specify only one server as both the primary and secondary
authentication/authorization servers.
■
The IP address and port number of the primary authentication server used by
the default RADIUS scheme “system” are 127.0.0.1 and 1645.
Configuring RADIUS
Accounting Servers
Set the IP address and port
number of the secondary RADIUS
authentication/authorization
server
secondary
authentication
ip-address
[
port-number
]
Optional
By default, the IP address and UDP
port number of the secondary
server are 0.0.0.0 and 1812
respectively.
Table 408
Configure RADIUS authentication/authorization server
Operation Command
Description
Table 409
Configure RADIUS accounting server
Operation Command
Description
Enter system view
system-view
-
Create a RADIUS
scheme and enter its
view
radius scheme
radius-scheme-name
Required
By default, a RADIUS scheme named
“system” has already been created in
the system.
Set the IP address and
port number of the
primary RADIUS
accounting server
primary accounting
ip-address
[
port-number
]
Required
By default, the IP address and UDP port
number of the primary accounting
server are 0.0.0.0 and 1813.
Set the IP address and
port number of the
secondary RADIUS
accounting server
secondary accounting
ip-address
[
port-number
]
Optional
By default, the IP address and UDP port
number of the secondary accounting
server are 0.0.0.0 and 1813.
Enable
stop-accounting
packet buffering
stop-accounting-buffer
enable
Optional
By default, stop-accounting packet
buffering is enabled.
Set the maximum
number of
transmission attempts
of the buffered
stop-accounting
packets.
retry stop-accounting
retry-times
Optional
By default, the system tries at most 500
times to transmit a buffered
stop-accounting request.
Set the maximum
number of real-time
accounting request
attempts
retry realtime-accounting
retry-times
Optional
By default, the maximum number of
real-time accounting request attempts
is 5. After that, the user connection is
cut down.
Summary of Contents for Switch 7754
Page 32: ...32 CHAPTER 1 CLI OVERVIEW ...
Page 70: ...70 CHAPTER 5 LOGGING IN USING MODEM ...
Page 76: ...76 CHAPTER 7 LOGGING IN THROUGH NMS ...
Page 86: ...86 CHAPTER 9 CONFIGURATION FILE MANAGEMENT ...
Page 120: ...120 CHAPTER 13 ISOLATE USER VLAN CONFIGURATION ...
Page 126: ...126 CHAPTER 14 SUPER VLAN ...
Page 136: ...136 CHAPTER 16 IP PERFORMANCE CONFIGURATION ...
Page 152: ...152 CHAPTER 17 IPX CONFIGURATION ...
Page 164: ...164 CHAPTER 19 QINQ CONFIGURATION ...
Page 172: ...172 CHAPTER 21 SHARED VLAN CONFIGURATION ...
Page 182: ...182 CHAPTER 22 PORT BASIC CONFIGURATION ...
Page 198: ...198 CHAPTER 24 PORT ISOLATION CONFIGURATION ...
Page 208: ...208 CHAPTER 25 PORT SECURITY CONFIGURATION ...
Page 224: ...224 CHAPTER 27 DLDP CONFIGURATION ...
Page 232: ...232 CHAPTER 28 MAC ADDRESS TABLE MANAGEMENT ...
Page 240: ...240 CHAPTER 29 CENTRALIZED MAC ADDRESS AUTHENTICATION CONFIGURATION ...
Page 280: ...280 CHAPTER 30 MSTP CONFIGURATION ...
Page 348: ...348 CHAPTER 35 IS IS CONFIGURATION ...
Page 408: ...408 CHAPTER 39 802 1X CONFIGURATION ...
Page 412: ...412 CHAPTER 40 HABP CONFIGURATION ...
Page 422: ...422 CHAPTER 41 MULTICAST OVERVIEW ...
Page 426: ...426 CHAPTER 42 GMRP CONFIGURATION ...
Page 480: ...480 CHAPTER 47 PIM CONFIGURATION ...
Page 506: ...506 CHAPTER 48 MSDP CONFIGURATION ...
Page 552: ...552 CHAPTER 51 TRAFFIC ACCOUNTING CONFIGURATION ...
Page 570: ...570 CHAPTER 53 HA CONFIGURATION ...
Page 582: ...582 CHAPTER 54 ARP CONFIGURATION SwitchA arp protective down recover interval 200 ...
Page 622: ...622 CHAPTER 58 DHCP RELAY AGENT CONFIGURATION ...
Page 684: ...684 CHAPTER 61 QOS CONFIGURATION ...
Page 718: ...718 CHAPTER 63 CLUSTER ...
Page 738: ...738 CHAPTER 67 UDP HELPER CONFIGURATION ...
Page 752: ...752 CHAPTER 69 RMON CONFIGURATION ...
Page 772: ...772 CHAPTER 70 NTP CONFIGURATION ...
Page 796: ...796 CHAPTER 72 FILE SYSTEM MANAGEMENT ...
Page 802: ...802 CHAPTER 73 BIMS CONFIGURATION ...
Page 814: ...814 CHAPTER 74 FTP AND TFTP CONFIGURATION ...
Page 830: ...830 CHAPTER 75 INFORMATION CENTER ...
Page 836: ...836 CHAPTER 76 DNS CONFIGURATION ...
Page 852: ...852 CHAPTER 77 BOOTROM AND HOST SOFTWARE LOADING ...
Page 858: ...858 CHAPTER 78 BASIC SYSTEM CONFIGURATION DEBUGGING ...