
18
Figure 10 AAA configuration procedure
To configure AAA, perform the following tasks:
Tasks at a glance
(Required.) Perform at least one of the following tasks to configure local users or AAA schemes:
•
•
•
•
(Required.) Configure AAA methods for ISP domains:
1.
(Required.)
2.
(Optional.)
Configuring ISP domain attributes
3.
(Required.) Perform at least one of the following tasks to configure AAA authentication, authorization,
and accounting methods for the ISP domain:
{
Configuring authentication methods for an ISP domain
{
Configuring authorization methods for an ISP domain
{
Configuring accounting methods for an ISP domain
(Optional.)
Enabling the session-control feature
(Optional.)
Configuring the RADIUS DAE server feature
(Optional.)
Setting the maximum number of concurrent login users
(Optional.)
Configuring AAA schemes
This section includes information on configuring local users, RADIUS schemes, HWTACACS
schemes, and LDAP schemes.
Configuring local users
To implement local authentication, authorization, and accounting, create local users and configure
user attributes on the device. The local users and attributes are stored in the local user database on
Configure the RADIUS, HWTACACS,
or LDAP schemes to be used
none
/
local
(the default)
/
scheme
Authorization method
Accounting method
Configure AAA methods for
different types of users or/and
the default methods for all
types of users
Create an ISP domain
and enter ISP domain
view
Authentication method
Configure local users and related
attributes
none
/
local
(the default)
/
scheme
+
+
Local AAA
Remote AAA
No AAA
none
/
local
(the default)
/
scheme
Summary of Contents for 10500 series
Page 326: ...312 No duration limit for this SA ...