Operation Manual – AAA
H3C S3100 Series Ethernet Switches
Chapter 2 AAA Configuration
2-23
2.2.11 Enabling Sending Trap Message when a RADIUS Server Goes Down
Table 2-21
Specify to send trap message when a RADIUS server goes down
Operation
Command
Remarks
Enter system view
system-view
—
Enable the sending of
trap message when a
RADIUS server is down
radius
trap
{
authentication-server-d
own
|
accounting-server-down
}
Optional
By default, the switch
does not send trap
message when a RADIUS
server is down.
Note:
z
This configuration takes effect on all RADIUS schemes.
z
The switch considers a RADIUS server as being down if it has tried the configured
maximum times to send a message to the RADIUS server but does not receive any
response.
2.2.12 Enabling the User Re-Authentication at Restart Function
Note:
The user re-authentication at restart function applies only to the environment where the
RADIUS authentication/authorization and accounting server is CAMS.
In an environment that a CAMS server is used to implement AAA functions, if the switch
reboots after an exclusive user (a user whose concurrent online number is set to 1 on
the CAMS) gets authenticated and authorized and begins being charged, the switch will
give a prompt that the user has already been online when the user re-logs into the
network before the CAMS performs online user detection, and the user cannot get
authenticated. In this case, the user can access the network again only when the
CAMS administrator manually removes the user's online information.
The user re-authentication at restart function is designed to resolve this problem. After
this function is enabled, every time the switch restarts:
1) The switch generates an Accounting-On message, which mainly contains the
following information: NAS-ID, NAS-IP-address (source IP address), and session
ID.
2)
The switch sends the Accounting-On message to the CAMS at regular intervals.