S e n d f e e d b a c k t o n x 5 0 0 0 - d o c f e e d b a c k @ c i s c o . c o m
18-3
Cisco Nexus 5000 Series Switch CLI Software Configuration Guide
OL-16597-01
Chapter 18 Configuring
Information About
•
Connection parameters, including the host or client IP address (IPv4 or IPv6), access list, and
user timeouts
Default Server Encryption Type and Preshared Key
You must configure the preshared key to authenticate the switch to the server. A
preshared key is a secret text string shared between the Nexus 5000 Series switch and the
server host. The length of the key is restricted to 63 characters and can include any printable ASCII
characters (white spaces are not allowed). You can configure a global preshared secret key for all
server configurations on the Nexus 5000 Series switch to use.
You can override the global preshared key assignment by explicitly using the
key
option when
configuring an individual server.
Server Monitoring
An unresponsive server can delay the processing of AAA requests. A Nexus 5000 Series
switch can periodically monitor an server to check whether it is responding (or alive) to save
time in processing AAA requests. The Nexus 5000 Series switch marks unresponsive servers
as dead and does not send AAA requests to any dead servers. A Nexus 5000 Series switch
periodically monitors dead servers and brings them to the alive state once they are
responding. This process verifies that a server is in a working state before real AAA requests
are sent its way. Whenever an server changes to the dead or alive state, a Simple Network
Management Protocol (SNMP) trap is generated and the Nexus 5000 Series switch displays an error
message that a failure is taking place before it can impact performance. See
Figure 18-1
.
Figure 18-1
Server States
Note
The monitoring interval for alive servers and dead servers are different and can be configured by the user.
The server monitoring is performed by sending a test authentication request to the
server.
No
response
Test
Test
Idle timer
expired
Directed
AAA request
Dead timer expired
Response from
remote server
AAA packets
sent
Alive
Alive and
used
Dead and
testing
Alive and
testing
Dead
Application
request
Process
application
request
154534
Summary of Contents for N5010P-N2K-BE
Page 50: ...Se n d f e e d b a ck t o n x 5 0 0 0 d o c f e e d b a ck c i s c o c o m ...
Page 102: ...Se n d f e e d b a ck t o n x 5 0 0 0 d o c f e e d b a ck c i s c o c o m ...
Page 240: ...Se n d f e e d b a ck t o n x 5 0 0 0 d o c f e e d b a ck c i s c o c o m ...
Page 312: ...Se n d f e e d b a ck t o n x 5 0 0 0 d o c f e e d b a ck c i s c o c o m ...
Page 400: ...Se n d f e e d b a ck t o n x 5 0 0 0 d o c f e e d b a ck c i s c o c o m ...
Page 418: ...Se n d f e e d b a ck t o n x 5 0 0 0 d o c f e e d b a ck c i s c o c o m ...
Page 436: ...Se n d f e e d b a ck t o n x 5 0 0 0 d o c f e e d b a ck c i s c o c o m ...
Page 658: ...Se n d f e e d b a ck t o n x 5 0 0 0 d o c f e e d b a ck c i s c o c o m ...