
No.
Data
1
Name of an authentication scheme
2
Name of an accounting scheme
3
Name of a RADIUS server template
4
IP addresses and port numbers of the primary RADIUS authentication servers
5
IP addresses and port numbers of the primary RADIUS accounting servers
6
(Optional) IP address of the RADIUS authorization server
7
(Optional)IP addresses and port numbers of the secondary RADIUS
authentication servers
8
(Optional) IP addresses and port numbers of the secondary RADIUS accounting
servers
9
(Optional) Shared key in RADIUS packets
10
(Optional) Number of times RADIUS request packets are retransmitted and
timeout interval
1.4.2 Configuring AAA Schemes
To use RADIUS AAA, set the authentication mode in an authentication scheme to RADIUS and
the accounting mode in an accounting scheme to RADIUS.
Context
If RADIUS authentication is configured, you can also configure local authentication or non-
authentication as a backup. This allows local authentication or non-authentication to be
implemented if RADIUS authentication fails. If RADIUS accounting is configured, you can also
configure non-accounting as a backup.
Procedure
l
Configuring an authentication scheme
1.
Run:
system-view
The system view is displayed.
2.
Run:
aaa
The AAA view is displayed.
3.
Run:
authentication-scheme
authentication-scheme-name
An authentication scheme is created and the authentication scheme view is displayed.
Huawei AR1200-S Series Enterprise Routers
Configuration Guide - Security
1 AAA Configuration
Issue 02 (2012-03-30)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
12