2-22
[Sysname-radius-radius1] server-type standard
state
Syntax
state
{
primary
|
secondary
} {
accounting
|
authentication
} {
active
|
block
}
View
RADIUS scheme view
Default Level
2: System level
Parameters
primary
: Sets the status of the primary RADIUS server.
secondary
: Sets the status of the secondary RADIUS server.
accounting
: Sets the status of the RADIUS accounting server.
authentication
: Sets the status of the RADIUS authentication/authorization server.
active
: Sets the status of the RADIUS server to
active
, namely the normal operation state.
block
: Sets the status of the RADIUS server to
block
.
Description
Use the
state
command to set the status of a RADIUS server.
By default, every RADIUS server configured with an IP address in the RADIUS scheme is in the state
of active.
Note that:
z
When a primary server, authentication/authorization server or accounting server, fails, the device
automatically turns to the secondary server.
z
Once the primary server fails, the primary server turns into the blocked state, and the device turns
to the secondary server. In this case, if the secondary server is available, the device triggers the
primary server quiet timer. After the quiet timer times out, the status of the primary server is active
again and the status of the secondary server remains the same. If the secondary server fails, the
device restores the status of the primary server to active immediately. If the primary server has
resumed, the device turns to use the primary server and stops communicating with the secondary
server. After accounting starts, the communication between the client and the secondary server
remains unchanged.
z
When both the primary server and the secondary server are in the state of blocked, you need to
set the status of the secondary server to active to use the secondary server for authentication.
Otherwise, the switchover will not occur.
z
If one server is in the active state while the other is blocked, the switchover will not take place
even if the active server is not reachable.
z
You can use this command to change the settings only when no user is using the RADIUS
scheme.
Related commands:
radius scheme
,
primary authentication
,
secondary authentication
,
primary
accounting
,
secondary accounting
.
Summary of Contents for E4510-48G
Page 109: ...2 18 Sysname interface bridge aggregation 1 Sysname Bridge Aggregation1 shutdown ...
Page 309: ...6 4 Sysname interface vlan interface 1 Sysname Vlan interface1 ip address dhcp alloc ...
Page 324: ...8 3 Sysname interface vlan interface 1 Sysname Vlan interface1 ip address bootp alloc ...
Page 530: ...2 5 Sysname mvlan 100 subvlan 10 to 15 ...
Page 739: ...8 15 Sysname system view Sysname port security trap addresslearned ...
Page 819: ...13 11 Sysname system view Sysname public key peer key2 import sshkey key pub ...
Page 914: ...5 17 Sysname reset oam ...
Page 1064: ...5 30 Slot 2 Set next configuration file successfully ...
Page 1325: ...21 13 Examples Redirect to member 2 Sysname irf switch to 2 Sysname Slave 2 ...