![TP-Link T2500G-10MPS User Manual Download Page 627](http://html1.mh-extra.com/html/tp-link/t2500g-10mps/t2500g-10mps_user-manual_1145700627.webp)
Configuration Guide 603
Configuring Network Security
802.1X Configuration
Step 3
radius-server host
ip-address
[ auth-port
port-id
] [ acct-port
port-id
] [ timeout
time
] [
retransmit
number
] [ key {
[ 0 ]
string
|
7
encrypted-string
} ]
Add the RADIUS server and configure the related parameters as needed.
host
ip-address
:
Enter the IP address of the server running the RADIUS protocol.
auth-port
port-id
:
Specify the UDP destination port on the RADIUS server for authentication
requests. The default setting is 1812.
acct-port
port-id:
Specify the UDP destination port on the RADIUS server for accounting
requests. The default setting is 1813. Generally, the accounting feature is not used in the
authentication account management.
timeout
time
:
Specify the time interval that the switch waits for the server to reply before
resending. The valid values are from 1 to 9 seconds and the default setting is 5 seconds.
retransmit
number
:
Specify the number of times a request is resent to the server if the
server does not respond. The valid values are from 1 to 3 and the default setting is 2.
key {
[ 0 ]
string
|
7
encrypted-string
}
:
Specify the shared key. 0 and 7 prevent the encryption
type. 0 indicates that an unencrypted key will follow. 7 indicates that a symmetric encrypted
key with a fixed length will follow. By default, the encryption type is 0.
string
is the shared
key for the switch and the server, which contains 31 characters at most.
encrypted-string
is
a symmetric encrypted key with a fixed length, which you can copy from the configuration
file of another switch. The key or encrypted-key you configured here will be displayed in the
encrypted form.
Step 4
aaa group
radius
group-name
Create a radius server group.
radius:
Specify the group type as radius.
group-name
:
Specify a name for the group.
Step 5
server
ip-address
Add the existing servers to the server group.
ip-address
:
Specify IP address of the server to be added to the group.
Step 6
exit
Return to global configuration mode.
Step 7
aaa authentication dot1x default
{
method
}
Select the radius group for 802.1X authentication.
method:
Specify the radius group for 802.1X authentication.
aaa accounting dot1x default
{
method
}
Select the radius group for 802.1X accounting.
method:
Specify the radius group for 802.1X accounting.
Note: If multiple radius servers are available, you are suggested to add them to different
server groups respectively for authentication and accounting.
Summary of Contents for T2500G-10MPS
Page 1: ...User Guide T2500G 10MPS 1910012405 REV1 0 1 April 2018...
Page 24: ...Using the CLI 767 Appendix Default Parameters 773...
Page 145: ...Part 5 Monitoring Traffic CHAPTERS 1 Traffic Monitor 2 Appendix Default Parameters...
Page 172: ...Part 7 Configuring DDM CHAPTERS 1 Overview 2 DDM Configuration 3 Appendix Default Parameters...