19-17
19.1.7.12 Example–Creating a Group
The use of the
(config-radsrv-group)
sub-instance is explained below:
1. Create a group called
Sales
in the local RADIUS Server database.
RFS7000(config-radsrv)#group sales
2.
Check RADIUS user group configuration commands.
RFS7000(config-radsrv-group)#?
Radius user group configuration commands:
clrscr Clears the display screen
end End current mode and change to EXEC mode
exit End current mode and down to previous mode
group Configure radius user group paramaters
guest-group Guest group configuration
help Description of the interactive help system
no Negate a command or set its defaults
policy Radius group access policy configuration
rad-user Add Radius user to this group
service Service Commands
show
Show running system information
3.
Use the
policy
command to configure group policies for the group created in Step 1.
RFS7000(config-radsrv-group)#policy ?
day Day of access policy configuration
time Configure time of access policy for this group
vlan VLAN id for this group
wlan Configure wlan access policy for this group
RFS7000(config-radsrv-group)#policy day weekdays
RFS7000(config-radsrv-group)#policy time start 12 30 end 15 30
4.
Use the
policy vlan
command
to assign VLAN ID of 10 to Sales group.
RFS7000(config-radsrv-group)#policy vlan 10
5.
Use the
policy wlan
command to allow only authorised users to access this group’s wlan.
RFS7000(config-radsrv-group)#policy wlan 1 2 5
6.
Use
(config-radsrv)#rad-user
to create a user called
testuser
and add it to the
Sales
group.
RFS7000(config-radsrv)#rad-user testuser password testpassword group sales
Sep 08 17:41:55 2006: RADCONF: Adding user "testuser" into local database
Sep 08 17:41:55 2006: RADCONF: User "testuser" is added to group "sales"
7.
Use
(config-radsrv)#nas
to add a NAS entry.
RFS7000(config-radsrv)#nas ?
A.B.C.D/M Radius client IP address
RFS7000(config-radsrv)#nas 10.10.10.0/24 ?
key Radius client shared secret
RFS7000(config-radsrv)#nas 10.10.10.0/24 key ?
0 Password is specified UNENCRYPTED
2 Password is encrypted with password-encryption secret
LINE The secret(client shared secret), upto 32 characters
RFS7000(config-radsrv)#nas 10.10.10.0/24 key 0 very-secret!!
Содержание RFS7000 Series
Страница 1: ... RFS7000 Series RF Switch CLI Reference Guide ...
Страница 10: ...x RFS7000 Series CLI Reference Guide ...
Страница 30: ...Overview 1 10 ...
Страница 150: ...Overview 3 16 RFS7000 show management Mgmt Interface vlan1 Management access permitted via any vlan interface RFS7000 ...
Страница 196: ...Overview 4 46 ...
Страница 270: ...Overview 5 74 ...
Страница 284: ...Overview 6 14 ...
Страница 294: ...Overview 7 10 ...
Страница 304: ...Overview 8 10 ...
Страница 308: ...Overview 9 4 ...
Страница 338: ...Overview 11 36 ...
Страница 366: ...Overview 12 28 ...
Страница 380: ...Overview 13 14 ...
Страница 404: ...Overview 15 2 terminal Sets terminal line parameters page 15 14 Command Description Ref ...
Страница 434: ...Overview 16 18 ...
Страница 466: ...Overview 17 32 ...
Страница 474: ...Overview 18 8 ...
Страница 504: ...Overview 19 30 ...
Страница 572: ...Overview 20 68 ...
Страница 581: ...21 9 new show alarm log count all new acknowledged severity to limit 1 65535 RFS7000 config sole ...
Страница 584: ...Overview 21 12 ...
Страница 586: ...A 2 RFS7000 Series CLI Reference Guide ...
Страница 587: ......
Страница 588: ...MOTOROLA INC 1303 E ALGONQUIN ROAD SCHAUMBURG IL 60196 http www motorola com 72E 103891 01 Revision A January 2008 ...