
Chapter 26 AAA
OLT2406 User’s Guide
220
Login
These fields specify which database the OLT should use (first, second and third) to authenticate
administrator accounts (users for OLT management).
Configure the local user accounts in the
Access Control > Logins
screen. The RADIUS is a
external server. Before you specify the priority, make sure you have set up the corresponding
database correctly first.
You can specify up to three methods for the OLT to authenticate administrator accounts. The
OLT checks the methods in the order you configure them (first
Method 1
, and finally
Method 2
).
You must configure the settings in the
Method 1
field. If you want the OLT to check other
sources for administrator accounts, specify them in the
Method 2
field.
Select
local
to have the OLT check the administrator accounts configured in the
Access
Control > Logins
screen.
Select
radius
to have the OLT check the administrator accounts configured via your RADIUS
server.
Authorization
Use this section to configure authorization settings on the OLT.
Type
Set whether the OLT provides the following services to a user.
•
Exec
: Allow an administrator which logs into the OLT through Telnet or SSH to have a
different access privilege level assigned via the external server.
•
Dot1x
: Allow an IEEE 802.1x client to have different bandwidth limit or VLAN ID assigned via
the external server.
Active
Select this to activate authorization for a specified event types.
Method
Select whether you want to use RADIUS for authorization of specific types of events.
RADIUS is the only method for IEEE 802.1x authorization.
Accounting
Use this section to configure accounting settings on the OLT.
Update Period
This is the amount of time in minutes before the OLT sends an update to the accounting server.
This is only valid if you select the
start-stop
option for the
Exec
or
Dot1x
entries.
Type
The OLT supports the following types of events to be sent to the accounting server(s):
•
System
- Configure the OLT to send information when the following system events occur:
system boots up, system shuts down, system accounting is enabled, system accounting is
disabled
•
Exec
: Configure the system to send information when an administrator logs in and logs out
via the console port, Telnet or SSH.
•
Commands
: Configure the system to send information when commands of specified
privilege level and higher are executed on the system.
•
Dot1x
- Configure the OLT to send information when an IEEE 802.1x client begins a session
(authenticates via the OLT), ends a session as well as interim updates of a session.
Active
Select this to activate accounting for a specified event types.
Broadcast
Select this to have the OLT send accounting information to all configured accounting servers
at the same time.
If you don’t select this and you have two accounting servers set up, then the OLT sends
information to the first accounting server and if it doesn’t get a response from the accounting
server then it tries the second accounting server.
Table 78 Advanced Application > AAA > AAA Setup (continued)
LABEL
DESCRIPTION
Summary of Contents for OLT2406
Page 4: ...Document Conventions OLT2406 User s Guide 4 Desktop Laptop Switch IP Phone Smart T V...
Page 32: ...Table of Contents OLT2406 User s Guide 32 Index 758...
Page 33: ...33 PART I Introduction and Hardware Installation...
Page 63: ...63 PART II Web Configurator...
Page 179: ...Chapter 21 Classifier OLT2406 User s Guide 179 Figure 112 Classifier Example...
Page 182: ...Chapter 22 Policy Rule OLT2406 User s Guide 182 Figure 113 Advanced Application Policy Rule...
Page 186: ...Chapter 22 Policy Rule OLT2406 User s Guide 186 Figure 114 Policy Example...
Page 248: ...Chapter 28 Loop Guard OLT2406 User s Guide 248 Figure 151 Advanced Application Loop Guard...
Page 393: ...393 PART III CLI Commands...
Page 581: ...Chapter 78 VoIP OLT2406 User s Guide 581...
Page 725: ...725 PART IV Troubleshooting Specifications Appendices and Index...