526
C
HAPTER
49: AAA & RADIUS & HWTACACS C
ONFIGURATION
c
CAUTION:
■
The authentication response sent from the RADIUS server to the RADIUS client
carries the authorization information. Therefore, no separate authorization
server can be specified.
■
In an actual network environment, you can either specify two RADIUS servers
as the primary and secondary authentication/authorization servers respectively,
or specify only one server as both the primary and secondary
authentication/authorization servers.
■
The IP address and port number of the primary authentication server used by
the default RADIUS scheme “system” are 127.0.0.1 and 1645.
Configuring RADIUS
Accounting Servers
Set the IP address and port
number of the secondary RADIUS
authentication/authorization
server
secondary
authentication
ip-address
[
port-number
]
Optional
By default, the IP address and UDP
port number of the secondary
server are 0.0.0.0 and 1812
respectively.
Table 408
Configure RADIUS authentication/authorization server
Operation Command
Description
Table 409
Configure RADIUS accounting server
Operation Command
Description
Enter system view
system-view
-
Create a RADIUS
scheme and enter its
view
radius scheme
radius-scheme-name
Required
By default, a RADIUS scheme named
“system” has already been created in
the system.
Set the IP address and
port number of the
primary RADIUS
accounting server
primary accounting
ip-address
[
port-number
]
Required
By default, the IP address and UDP port
number of the primary accounting
server are 0.0.0.0 and 1813.
Set the IP address and
port number of the
secondary RADIUS
accounting server
secondary accounting
ip-address
[
port-number
]
Optional
By default, the IP address and UDP port
number of the secondary accounting
server are 0.0.0.0 and 1813.
Enable
stop-accounting
packet buffering
stop-accounting-buffer
enable
Optional
By default, stop-accounting packet
buffering is enabled.
Set the maximum
number of
transmission attempts
of the buffered
stop-accounting
packets.
retry stop-accounting
retry-times
Optional
By default, the system tries at most 500
times to transmit a buffered
stop-accounting request.
Set the maximum
number of real-time
accounting request
attempts
retry realtime-accounting
retry-times
Optional
By default, the maximum number of
real-time accounting request attempts
is 5. After that, the user connection is
cut down.
Содержание Switch 7754
Страница 32: ...32 CHAPTER 1 CLI OVERVIEW ...
Страница 70: ...70 CHAPTER 5 LOGGING IN USING MODEM ...
Страница 76: ...76 CHAPTER 7 LOGGING IN THROUGH NMS ...
Страница 86: ...86 CHAPTER 9 CONFIGURATION FILE MANAGEMENT ...
Страница 120: ...120 CHAPTER 13 ISOLATE USER VLAN CONFIGURATION ...
Страница 126: ...126 CHAPTER 14 SUPER VLAN ...
Страница 136: ...136 CHAPTER 16 IP PERFORMANCE CONFIGURATION ...
Страница 152: ...152 CHAPTER 17 IPX CONFIGURATION ...
Страница 164: ...164 CHAPTER 19 QINQ CONFIGURATION ...
Страница 172: ...172 CHAPTER 21 SHARED VLAN CONFIGURATION ...
Страница 182: ...182 CHAPTER 22 PORT BASIC CONFIGURATION ...
Страница 198: ...198 CHAPTER 24 PORT ISOLATION CONFIGURATION ...
Страница 208: ...208 CHAPTER 25 PORT SECURITY CONFIGURATION ...
Страница 224: ...224 CHAPTER 27 DLDP CONFIGURATION ...
Страница 232: ...232 CHAPTER 28 MAC ADDRESS TABLE MANAGEMENT ...
Страница 240: ...240 CHAPTER 29 CENTRALIZED MAC ADDRESS AUTHENTICATION CONFIGURATION ...
Страница 280: ...280 CHAPTER 30 MSTP CONFIGURATION ...
Страница 348: ...348 CHAPTER 35 IS IS CONFIGURATION ...
Страница 408: ...408 CHAPTER 39 802 1X CONFIGURATION ...
Страница 412: ...412 CHAPTER 40 HABP CONFIGURATION ...
Страница 422: ...422 CHAPTER 41 MULTICAST OVERVIEW ...
Страница 426: ...426 CHAPTER 42 GMRP CONFIGURATION ...
Страница 480: ...480 CHAPTER 47 PIM CONFIGURATION ...
Страница 506: ...506 CHAPTER 48 MSDP CONFIGURATION ...
Страница 552: ...552 CHAPTER 51 TRAFFIC ACCOUNTING CONFIGURATION ...
Страница 570: ...570 CHAPTER 53 HA CONFIGURATION ...
Страница 582: ...582 CHAPTER 54 ARP CONFIGURATION SwitchA arp protective down recover interval 200 ...
Страница 622: ...622 CHAPTER 58 DHCP RELAY AGENT CONFIGURATION ...
Страница 684: ...684 CHAPTER 61 QOS CONFIGURATION ...
Страница 718: ...718 CHAPTER 63 CLUSTER ...
Страница 738: ...738 CHAPTER 67 UDP HELPER CONFIGURATION ...
Страница 752: ...752 CHAPTER 69 RMON CONFIGURATION ...
Страница 772: ...772 CHAPTER 70 NTP CONFIGURATION ...
Страница 796: ...796 CHAPTER 72 FILE SYSTEM MANAGEMENT ...
Страница 802: ...802 CHAPTER 73 BIMS CONFIGURATION ...
Страница 814: ...814 CHAPTER 74 FTP AND TFTP CONFIGURATION ...
Страница 830: ...830 CHAPTER 75 INFORMATION CENTER ...
Страница 836: ...836 CHAPTER 76 DNS CONFIGURATION ...
Страница 852: ...852 CHAPTER 77 BOOTROM AND HOST SOFTWARE LOADING ...
Страница 858: ...858 CHAPTER 78 BASIC SYSTEM CONFIGURATION DEBUGGING ...