Operation Manual – AAA RADIUS HWTACACS
H3C S5500-EI Series Ethernet Switches
Chapter 1 AAA/RADIUS/HWTACACS
Configuration
1-28
Note:
z
The maximum number of retransmission attempts of RADIUS packets multiplied by
the RADIUS server response timeout period cannot be greater than 75.
z
Refer to the
timer response-timeout
command in the command manual for
configuring RADIUS server response timeout period.
1.4.6 Setting the Supported RADIUS Server Type
Follow these steps to set the supported RADIUS server type:
To do…
Use the command…
Remarks
Enter system view
system-view
—
Create a RADIUS scheme
and enter RADIUS
scheme view
radius scheme
radius-scheme-name
Required
Not defined by default
Specify the RADIUS
server type supported by
the device
server-type
{
extended
|
standard
}
Optional
By default, the RADIUS
server type is
standard
.
Note:
z
If you change the type of RADIUS server, the data stream destined to the original
RADIUS server will be restored to the default unit.
z
When a third-party RADIUS is used, you can configure the RADIUS server to
standard
or
extended
. When CAMS server is used, you must RADIUS server to
extended.
1.4.7 Setting the Status of RADIUS Servers
When a primary server, authentication/authorization server or accounting server, fails,
the device automatically turns to the secondary server.
When both the primary and secondary servers are available, the device sends request
packets to the primary server.
Once the primary server fails, the primary server turns into the state of block, and the
device turns to the secondary server. In this case:
z
If the secondary server is available, the device triggers the primary server quiet
timer. After the quiet timer times out, the status of the primary server is active
again and the status of the secondary server remains the same.