
Operation Manual – AAA
H3C S5600 Series Ethernet Switches
Chapter 2 AAA Configuration
2-13
Note:
Actually, the RADIUS service configuration only defines the parameters for information
exchange between switch and RADIUS server. To make these parameters take effect,
you must reference the RADIUS scheme configured with these parameters in an ISP
domain view (refer to
AAA Configuration
).
2.2.1 Creating a RADIUS Scheme
The RADIUS protocol configuration is performed on a RADIUS scheme basis. You
should first create a RADIUS scheme and enter its view before performing other
RADIUS protocol configurations.
Follow these steps to create a RADIUS scheme:
To do…
Use the command…
Remarks
Enter system view
system-view
—
Enable RADIUS
authentication port
radius client enable
Optional
By default, RADIUS
authentication port is enabled.
Create a RADIUS
scheme and enter its
view
radius scheme
radius-scheme-name
Required
By default, a RADIUS scheme
named "system" has already
been created in the system.
Note:
A RADIUS scheme can be referenced by multiple ISP domains simultaneously.
2.2.2 Configuring RADIUS Authentication/Authorization Servers
Follow these steps to configure RADIUS authentication/authorization servers:
To do…
Use the command…
Remarks
Enter system view
system-view
—
Create a RADIUS scheme
and enter its view
radius scheme
radius-scheme-name
Required
By default, a RADIUS
scheme named "system"
has already been created
in the system.