62
If the RADIUS authentication is not available, the Telnet user needs to enter password
654321
as
prompted for local authentication.
<Router> super 3
Password:
Å
Enter the password for RADIUS privilege level switch authentication
Error: Invalid configuration or no response from the authentication server.
Info: Change authentication mode to local.
Password:
Å
Enter the password for local privilege level switch authentication
User privilege level is 3, and only those commands can be used
whose level is equal or less than this.
Privilege note: 0-VISIT, 1-MONITOR, 2-SYSTEM, 3-MANAGE
AAA for portal users by a RADIUS server
Network requirements
, a host is directly connected to a router, and another host functions as both the
RADIUS AAA server and the portal server. Complete the following tasks:
•
Assign the host a public network IP address or configure the host to automatically obtain one
through DHCP.
•
Configure the router to provide direct portal authentication so that the host can access only the
portal server before passing portal authentication and can access the Internet after passing portal
authentication.
•
Set the shared keys for authenticating authentication and authorization packets exchanged
between the router and the RADIUS server as
expert
, and specify the ports for
authentication/authorization and accounting as 1812 and 1813, respectively.
•
Specify that a username sent to the RADIUS server carries the domain name.
•
For the portal user, register a monthly service that charges 120 dollars per month for usage of up to
120 hours.
Figure 18
AAA for portal users by a RADIUS server
Internet
Router
Portal user
192.168.1.58/24
Gateway : 192.168.1.70/24
RADIUS server / Portal server
10.1.1.1/24
GE1/0/1
192.168.1.70/24
GE1/0/2
10.1.1.2/24
Configure IP addresses for the devices as shown in
and make sure that devices can reach
each other.
The following describes how to configure the portal server and RADIUS server on the iMC. This example
assumes that the RADIUS server runs iMC PLAT 5.0 (E0101), iMC UAM 5.0 (E0101), and iMC CAMS
5.0 (E0101).