89
secondary accounting
(RADIUS scheme view)
server-load-sharing enable
vpn-instance
(RADIUS scheme view)
primary authentication (RADIUS scheme view)
Use
primary authentication
to specify the primary RADIUS authentication server.
Use
undo primary authentication
to restore the default.
Syntax
primary authentication
{
host-name
|
ipv4-address
|
ipv6
ipv6-address
}
[
port-number
|
key
{
cipher
|
simple
}
string
|
test-profile
profile-name
|
vpn-instance
vpn-instance-name
|
weight
weight-value
] *
undo primary authentication
Default
The primary RADIUS authentication server is not specified.
Views
RADIUS scheme view
Predefined user roles
network-admin
mdc-admin
Parameters
host-name
: Specifies the host name of the primary RADIUS authentication server, a case-insensitive
string of 1 to 253 characters.
ipv4-address
: Specifies the IPv4 address of the primary RADIUS authentication server.
ipv6
ipv6-address
: Specifies the IPv6 address of the primary RADIUS authentication server.
port-number
: Specifies the service port number of the primary RADIUS authentication server. The
value range for the UDP port number is 1 to 65535. The default setting is 1812.
key
: Specifies the shared key for secure communication with the primary RADIUS authentication
server.
cipher
: Specifies the key in encrypted form.
simple
: Specifies the key in plaintext form. For security purposes, the key specified in plaintext form
will be stored in encrypted form.
string
: Specifies the key. This argument is case sensitive.
•
In non-FIPS mode, the encrypted form of the key is a string of 1 to 117 characters. The plaintext
form of the key is a string of 1 to 64 characters.
•
In FIPS mode, the encrypted form of the key is a string of 15 to 117 characters. The plaintext
form of the key is a string of 15 to 64 characters. The plaintext string must contain digits,
uppercase letters, lowercase letters, and special characters.
test-profile
profile-name
: Specifies a test profile for detecting the RADIUS server status. The
profile-name
argument is a case-sensitive string of 1 to 31 characters.
vpn-instance vpn-instance-name
: Specifies an MPLS L3VPN instance to which the primary
RADIUS authentication server belongs. The
vpn-instance-name
argument is a case-sensitive string
of 1 to 31 characters. If the server is on the public network, do not specify this option.
Содержание FlexNetwork 7500 Series
Страница 350: ...335 Related commands display port security port security enable ...
Страница 379: ...364 Sysname system view Sysname keychain abc mode absolute Sysname keychain abc tcp kind 252 ...
Страница 519: ...504 Related commands display ssh2 algorithm ssh2 algorithm cipher ssh2 algorithm key exchange ssh2 algorithm mac ...