1-30
Configuring Attributes Related to Data to Be Sent to the RADIUS Server
Follow these steps to configure the attributes related to data to be sent to the RADIUS server:
To do…
Use the command…
Remarks
Enter system view
system-view
—
Enter RADIUS scheme view
radius scheme
radius-scheme-name
—
Specify the format of the
username to be sent to a
RADIUS server
user-name-format
{
keep-original
|
with-domain
|
without-domain
}
Optional
By default, the ISP domain
name is included in the
username.
Specify the unit for data flows or
packets to be sent to a RADIUS
server
data-flow-format
{
data
{
byte
|
giga-byte
|
kilo-byte
|
mega-byte
}
|
packet
{
giga-packet
|
kilo-packet
|
mega-packet
|
one-packet
} }*
Optional
The defaults are as follows:
byte
for data flows, and
one-packet
for data packets.
z
Some earlier RADIUS servers cannot recognize usernames that contain an ISP domain name. In
this case, the device must remove the domain name before sending a username including a
domain name. You can configure the
user-name-format
without-domain
command on the
device for this purpose.
z
If a RADIUS scheme defines that the username is sent without the ISP domain name, do not apply
the RADIUS scheme to more than one ISP domain. Otherwise, users using the same username
but in different ISP domains will be considered the same user.
z
For level switching authentication, the
user-name-format keep-original
and
user-name-format
without-domain
commands produce the same results, that is, usernames sent to the RADIUS
server carry no ISP domain name.
z
The unit of data flows sent to the RADIUS server must be consistent with the traffic statistics unit of
the RADIUS server. Otherwise, accounting cannot be performed correctly.
Enabling the RADIUS Trap Function
If a NAS sends an accounting or authentication request to the RADIUS server but gets no response, the
NAS retransmits the request. With the RADIUS trap function enabled, when the NAS transmits the
request for half of the specified maximum number of transmission attempts, it sends a trap message;
when the NAS transmits the request for the specified maximum number of transmission attempts, it
sends another trap message.
Follow these steps to enable the RADIUS trap function:
To do…
Use the command…
Remarks
Enter system view
system-view
—
Enable the RADIUS trap
function
radius trap
{
accounting-server-down
|
authentication-server-down
}
Required
Disabled by default
Содержание S7906E - Switch
Страница 82: ...1 4 DeviceA interface tunnel 1 DeviceA Tunnel1 service loopback group 1...
Страница 200: ...1 11 DeviceB display vlan dynamic No dynamic vlans exist...
Страница 494: ...ii Displaying and Maintaining Tunneling Configuration 1 45 Troubleshooting Tunneling Configuration 1 45...
Страница 598: ...ii...
Страница 1757: ...4 9...
Страница 1770: ...6 4...
Страница 2017: ...2 11 Figure 2 3 SFTP client interface...
Страница 2062: ...i Table of Contents 1 URPF Configuration 1 1 URPF Overview 1 1 What is URPF 1 1 How URPF Works 1 1 Configuring URPF 1 2...
Страница 2238: ...1 16 DeviceA cfd linktrace service instance 1 mep 1001 target mep 4002...
Страница 2442: ...2 4 Set the interval for sending Syslog or trap messages to 20 seconds Device mac address information interval 20...