109
When the RADIUS server load sharing feature is enabled, the device checks the weight value and
number of currently served users only for servers in active state. The most appropriate active server
is selected for communication.
When the primary server and all secondary servers are in blocked state, the device tries to
communicate with the primary server.
This command can affect the RADIUS server status detection feature when a valid test profile is
specified for a primary RADIUS authentication server.
•
If you set the status of the server to blocked, the device stops detecting the status of the server.
•
If you set the status of the server to active, the device starts to detect the status of the server.
Examples
# In RADIUS scheme
radius1
, set the status of the primary authentication server to blocked.
<Sysname> system-view
[Sysname] radius scheme radius1
[Sysname-radius-radius1] state primary authentication block
Related commands
display
radius scheme
radius-server test-profile
server-load-sharing enable
state
secondary
state secondary
Use
state
secondary
to set the status of a secondary RADIUS server.
Syntax
state
secondary
{
accounting
|
authentication
} [ {
host-name
|
ipv4-address
|
ipv6
ipv6-address
}
[
port-number
|
vpn-instance
vpn-instance-name
] *
] {
active
|
block
}
Default
A secondary RADIUS server is in active state.
Views
RADIUS scheme view
Predefined user roles
network-admin
mdc-admin
Parameters
accounting
: Specifies a secondary RADIUS accounting server.
authentication
: Specifies a secondary RADIUS authentication server.
host-name
: Specifies the host name of the secondary RADIUS server, a case-insensitive string of 1
to 253 characters.
ipv4-address
: Specifies the IPv4 address of a secondary RADIUS server.
ipv6
ipv6-address
: Specifies the IPv6 address of a secondary RADIUS server.
port-number
: Specifies the service port number of a secondary RADIUS server. The value range for
the UDP port number is 1 to 65535. The default port numbers for authentication and accounting are
1812 and 1813, respectively.
Содержание FlexNetwork 7500 Series
Страница 350: ...335 Related commands display port security port security enable ...
Страница 379: ...364 Sysname system view Sysname keychain abc mode absolute Sysname keychain abc tcp kind 252 ...
Страница 519: ...504 Related commands display ssh2 algorithm ssh2 algorithm cipher ssh2 algorithm key exchange ssh2 algorithm mac ...