![background image](http://html.mh-extra.com/html/zyxel-communications/uag-series/uag-series_reference-manual_944300248.webp)
Chapter 49 AAA Server
UAG CLI Reference Guide
248
aaa group server radius
group-name
Enter the sub-command mode.
[no] case-sensitive
Specify whether or not the server checks the username case. Set this to be
the same as the server’s behavior.
[no] server acct-address
radius_server
acct-port
auth_port
Sets the IP address (in dotted decimal notation) or the domain name of a
RADIUS accounting server to add to this server group. This also sets the
port number (between 1 and 65535) on the RADIUS accounting server to
which the UAG sends accounting information.
The
no
command clears this setting.
[no] server acct-interim activate
Sets the UAG to send subscriber status updates to the RADIUS server at the
specified interval.
The
no
command sets the UAG to not send subscriber status updates to the
RADIUS server.
[no] server acct-interim-interval
interval
Sets the time interval for how often the UAG is to send a subscriber status
update to the RADIUS server.
The
no
command clears this setting.
[no] server acct-retry-count <1-
10>
At times the UAG may not be able to use the primary RADIUS accounting
server. Sets the number of times the UAG should reattempt to use the
primary RADIUS server before attempting to use the secondary RADIUS
server. This also sets how many times the UAG will attempt to use the
secondary RADIUS server.
If there is also no response from the secondary RADIUS server, the UAG
stops attempting to authenticate the subscriber. The subscriber will see a
message that says the RADIUS server was not found.
The
no
command clears this setting and sets this to the default setting.
[no] server acct-secret
secret
Sets a password (up to 32 alphanumeric characters) as the key to be shared
between the external accounting server and the UAG. The key is not sent
over the network. This key must be the same on the external accounting
server and the UAG.
The
no
command clears this setting.
[no] server nas-ip NAS_ADDRESS
Sets the Network Access Server (NAS) IP address attribute if the RADIUS
server requires the UAG to provide it with a specific value.
The
no
command clears this setting.
[no] server nas-id NAS_IDENTIFIER
Sets the Network Access Server (NAS) identifier attribute if the RADIUS
server requires the UAG to provide it with a specific value. You can use up to
64 characters.
The
no
command clears this setting.
[no] server description
description
Sets the descriptive information for the RADIUS server group. You can use
up to 60 printable ASCII characters. The
no
command clears the setting.
[no] server group-attribute <1-
255>
Sets the value of an attribute that the UAG is used to determine to which
group a user belongs.
This attribute’s value is called a group identifier. You can add
ext-group-
user
user objects to identify groups based on different group identifier
values.
For example, you could configure attributes 1,10 and 100 and create a
ext-
group-user
user object for each of them. The
no
command clears the
setting.
Table 160
aaa group server radius Commands (continued)
COMMAND
DESCRIPTION
Summary of Contents for UAG Series
Page 5: ...Document Conventions UAG CLI Reference Guide 5 Server Firewall Telephone Switch Router ...
Page 22: ...22 PART I Introduction ...
Page 23: ...23 ...
Page 41: ...41 PART II Reference ...
Page 42: ...42 ...