© Copyright Lenovo 2017
Chapter 5: Authentication & Authorization Protocols
101
Configuring RADIUS on the Switch
Use
the
following
procedure
to
configure
Radius
authentication
on
your
CN4093.
1.
Turn
RADIUS
authentication
on,
then
configure
the
Primary
and
Secondary
RADIUS
servers.
2.
Configure
the
RADIUS
secret.
CAUTION:
If
you
configure
the
RADIUS
secret
using
any
method
other
than
through
the
console
port,
the
secret
may
be
transmitted
over
the
network
as
clear
text.
3.
If
desired,
you
may
change
the
default
UDP
port
number
used
to
listen
to
RADIUS.
The
well
‐
known
port
for
RADIUS
is
1645.
4.
Configure
the
number
retry
attempts
for
contacting
the
RADIUS
server,
and
the
timeout
period.
RADIUS Authentication Features in Enterprise NOS
Enterprise
NOS
supports
the
following
RADIUS
authentication
features:
Supports
RADIUS
client
on
the
switch,
based
on
the
protocol
definitions
in
RFC
2138
and
RFC
2866.
Allows
a
RADIUS
secret
password
of
up
to
32
characters.
Supports
secondary
authentication
server
so
that
when
the
primary
authentication
server
is
unreachable,
the
switch
can
send
client
authentication
requests
to
the
secondary
authentication
server.
Use
the
following
command
to
show
the
currently
active
RADIUS
authentication
server:
CN 4093(config)#
radius-server primary-host 10.10.1.1
CN 4093(config)#
radius-server secondary-host 10.10.1.2
CN 4093(config)#
radius-server primary-host 10.10.1.1 key
<1
‐
32 character secret>
CN 4093(config)#
radius-server secondary-host 10.10.1.2 key
<1
‐
32 character secret>
CN 4093(config)#
radius-server enable
CN 4093(config)#
radius-server port
<UDP
port
number>
CN 4093(config)#
radius-server retransmit 3
CN 4093(config)#
radius-server timeout 5
CN 4093#
show radius-server
Summary of Contents for Flex System Fabric CN4093
Page 27: ... Copyright Lenovo 2017 27 Part 1 Getting Started ...
Page 28: ...28 CN4093 Application Guide for N OS 8 4 ...
Page 58: ...58 CN4093 Application Guide for N OS 8 4 ...
Page 72: ...72 CN4093 Application Guide for N OS 8 4 ...
Page 85: ... Copyright Lenovo 2017 85 Part 2 Securing the Switch ...
Page 86: ...86 CN4093 Application Guide for N OS 8 4 ...
Page 98: ...98 CN4093 Application Guide for N OS 8 4 ...
Page 112: ...112 CN4093 Application Guide for N OS 8 4 ...
Page 136: ...136 CN4093 Application Guide for N OS 8 4 ...
Page 156: ...156 CN4093 Application Guide for N OS 8 4 ...
Page 192: ...192 CN4093 Application Guide for N OS 8 4 ...
Page 228: ...228 CN4093 Application Guide for N OS 8 4 ...
Page 229: ... Copyright Lenovo 2017 229 Part 4 Advanced Switching Features ...
Page 230: ...230 CN4093 Application Guide for N OS 8 4 ...
Page 298: ...298 CN4093 Application Guide for N OS 8 4 ...
Page 382: ...382 CN4093 Application Guide for N OS 8 4 ...
Page 392: ...392 CN4093 Application Guide for N OS 8 4 ...
Page 416: ...416 CN4093 Application Guide for N OS 8 4 ...
Page 452: ...452 CN4093 Application Guide for N OS 8 4 ...
Page 466: ...466 CN4093 Application Guide for N OS 8 4 ...
Page 496: ...496 CN4093 Application Guide for N OS 8 4 ...
Page 508: ...508 CN4093 Application Guide for N OS 8 4 ...
Page 510: ...510 CN4093 Application Guide for N OS 8 4 ...
Page 514: ...514 CN4093 Application Guide for N OS 8 4 ...
Page 538: ...538 CN4093 Application Guide for N OS 8 4 ...
Page 539: ... Copyright Lenovo 2017 539 Part 7 Network Management ...
Page 540: ...540 CN4093 Application Guide for N OS 8 4 ...
Page 554: ...554 CN4093 Application Guide for N OS 8 4 ...
Page 576: ...576 CN4093 Application Guide for N OS 8 4 ...
Page 596: ...596 CN4093 Application Guide for N OS 8 4 ...
Page 604: ...604 CN4093 Application Guide for N OS 8 4 ...
Page 609: ... Copyright Lenovo 2017 609 Part 9 Appendices ...
Page 610: ...610 CN4093 Application Guide for N OS 8 4 ...
Page 626: ...626 CN4093 Application Guide for N OS 8 4 ...
Page 633: ......
Page 634: ...Part Number 00MY375 Printed in USA IP P N 00MY375 ...