
Chapter 74 AAA
XS3800-28 User’s Guide
549
Authentication
Use this section to specify the methods used to authenticate users accessing the Switch.
Privilege
Enable
These fields specify which database the Switch should use (first, second and third) to
authenticate access privilege level for administrator accounts (users for Switch management).
Configure the access privilege of accounts through commands (see the Ethernet Switch CLI
Reference Guide) for
local
authentication. The
and
RADIUS
are external servers.
Before you specify the priority, make sure you have set up the corresponding database
correctly first.
You can specify up to three methods for the Switch to authenticate the access privilege level
of administrators. The Switch checks the methods in the order you configure them (first
Method
1
, then
Method 2
and finally
Method 3
). You must configure the settings in the
Method 1
field. If
you want the Switch to check other sources for access privilege level specify them in
Method 2
and
Method 3
fields.
Select
local
to have the Switch check the access privilege configured for local authentication.
Select
radius
or
to have the Switch check the access privilege through the external
servers.
Login
These fields specify which database the Switch should use (first, second and third) to
authenticate administrator accounts (users for Switch management).
Configure the local user accounts in the
SYSTEM
>
Logins
screen. The and RADIUS are
external servers. Before you specify the priority, make sure you have set up the corresponding
database correctly first.
You can specify up to three methods for the Switch to authenticate administrator accounts.
The Switch checks the methods in the order you configure them (first
Method 1
, then
Method 2
and finally
Method 3
). You must configure the settings in the
Method 1
field. If you want the
Switch to check other sources for administrator accounts, specify them in
Method 2
and
Method 3
fields.
Select
local
to have the Switch check the administrator accounts configured in the
SYSTEM
>
Logins
screen.
Select
radius
to have the Switch check the administrator accounts configured through the
RADIUS Server.
Select
to have the Switch check the administrator accounts configured through the
Server
.
Authorization
Use this section to configure authorization settings on the Switch.
Type
Set whether the Switch provides the following services to a user.
•
Exec
: Allow an administrator which logs into the Switch through Telnet or SSH to have a
different access privilege level assigned through the external server.
•
Dot1x
: Allow an IEEE 802.1x client to have different bandwidth limit or VLAN ID assigned
through the external server.
Active
Enable the switch button to activate authorization for a specified event type.
Console
Select this to allow an administrator which logs in the Switch through the console port to have
different access privilege level assigned through the external server.
Method
Select whether you want to use
radius
or
for authorization of specific types of events.
RADIUS is the only method for IEEE 802.1x authorization.
Accounting
Use this section to configure accounting settings on the Switch.
Table 293 SECURITY > AAA > AAA Setup (continued)
LABEL
DESCRIPTION
Summary of Contents for XS3800-28
Page 29: ...29 PART I User s Guide...
Page 54: ...54 PART II Technical Reference...
Page 88: ...Chapter 4 Web Configurator XS3800 28 User s Guide 88 Figure 51 Online Web Help...
Page 148: ...Chapter 20 Cloud Management XS3800 28 User s Guide 148 Figure 94 SYSTEM Cloud Management...
Page 263: ...Chapter 36 OAM XS3800 28 User s Guide 263 Figure 182 PORT OAM OAM Status OAM Details...
Page 540: ...Chapter 72 VRRP XS3800 28 User s Guide 540 Figure 434 VRRP Example 2 VRRP Status on Switch B...
Page 581: ...Chapter 77 Policy Rule XS3800 28 User s Guide 581 Figure 456 Policy Example...