Figure 5-23 Access Authentication Configuration Instance - Zte ZXR10 2900E series Configuration Manual

Easy-maintenance secure switch
Hide thumbs Also See for ZXR10 2900E series:
Table of Contents

Advertisement

ZXR10 2900E Series Configuration Guide
console port and configure the access server, and then enable client software on the
user PC to originate authentication request. See

Figure 5-23 Access Authentication Configuration Instance

l
Configuration Procedure
1. Configure layer-3 interface commands
zte(cfg-router)#set ipport 0 ip 10.40.89.106/24
zte(cfg-router)#set ipport 0 vlan 1
zte(cfg-router)#set ipport 0 enable
2. Configure 802.1X commands
zte(cfg)#set port 2 security enable
zte(cfg)#config nas
zte(cfg-nas)#aaa-control port 2 dot1x enable
zte(cfg-nas)#aaa-control port 2 keepalive enable
zte(cfg-nas)#aaa-control port 2 accounting enable
3. Configure radius commands
zte(zte)#config nas
zte(cfg-nas)#radius isp zte enable
zte(cfg-nas)#radius isp zte defaultisp enable
zte(cfg-nas)#radius isp zte sharedsecret 1234
zte(cfg-nas)#radius isp zte client 10.40.89.106
zte(cfg-nas)#radius isp zte add accounting 10.40.89.78
zte(cfg-nas)#radius isp zte add authentication 10.40.89.78
4. Enable radius client software on the PC and input a correct username and
password. Then the authentication request is sent.
Disable the security proxy such as Sygate before the user PC sending the
authentication request.
l
Configuration Verification
SJ-20130731155059-002|2013-11-27 (R1.0)
Note:
Figure
5-78
ZTE Proprietary and Confidential
5-23.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents