Operation Manual – AAA
H3C S3100 Series Ethernet Switches
Chapter 2 AAA Configuration
2-13
Note:
Actually, the RADIUS service configuration only defines the parameters for information
exchange between switch and RADIUS server. To make these parameters take effect,
you must reference the RADIUS scheme configured with these parameters in an ISP
domain view (refer to
Chapter 2 AAA Configuration
).
2.2.1 Creating a RADIUS Scheme
The RADIUS protocol configuration is performed on a RADIUS scheme basis. You
should first create a RADIUS scheme and enter its view before performing other
RADIUS protocol configurations.
Table 2-11
Create a RADIUS scheme
Operation
Command
Remarks
Enter system view
system-view
—
Enable RADIUS
authentication port
radius client enable
Optional
By default, RADIUS
authentication port is enabled.
Create a RADIUS
scheme and enter its
view
radius scheme
radius-scheme-name
Required
By default, a RADIUS scheme
named "system" has already been
created in the system.
Note:
A RADIUS scheme can be referenced by multiple ISP domains simultaneously.
2.2.2 Configuring RADIUS Authentication/Authorization Servers
Table 2-12
Configure RADIUS authentication/authorization servers
Operation
Command
Remarks
Enter system view
system-view
—
Create a RADIUS scheme
and enter its view
radius scheme
radius-scheme-name
Required
By default, a RADIUS
scheme named "system"
has already been created
in the system.