Radius-Server Vrf - Dell S6100 Configuration Manual

Hide thumbs Also See for S6100:
Table of Contents

Advertisement

Version
8.3.19.0
8.3.11.1
8.4.1.0
8.3.7.0
7.7.1.0
7.6.1.0
7.5.1.0
pre-6.2.1.0
Usage Information
To configure any number of RADIUS server hosts for each server host that is configured, use this command. Dell
Networking OS searches for the RADIUS hosts in the order they are configured in the software.
The global default values for the timeout, retransmit, and key optional parameters are applied, unless those
values are specified in the radius-server host or other commands. To return to the global default values, if
you configure the timeout, retransmit, or key values, include those keywords when using the no radius-
server host command syntax.
You can use duplicate host names or IP addresses among RADIUS groups. However, you cannot use duplicate host
names or IP addresses within the same RADIUS group. If a VRF is not configured on the RADIUS group, then
servers configured in the group are considered to be on the default VRF. RADIUS servers that are configured in the
CONFIGURATION mode are also considered to be on the default VRF.
You must configure the RADIUS group explicitly with the aaa radius group command in order for the AAA
servers to use the group of RADIUS servers. The 802.1x servers use the group of RADIUS servers based on the
VRF where the 802.1x request is received. As a result, it is possible that both globally configured RADIUS servers as
well as the group-configured RADIUS servers (without VRF or default VRF) are used for processing the 802.1x
requests that are received at the default VRF. The order in which the RADIUS servers are tried depends on the
order in which the RADIUS servers are configured.
Example
Dell(config)#radius-server host 192.100.0.12
Force all logged-in users to re-authenticate (y/n)?
Dell(config)#no radius-server host 192.100.0.12
Force all logged-in users to re-authenticate (y/n)?
Related Commands

radius-server vrf

Create an association between a RADIUS server group and a VRF and source interface.
ud
Syntax
radius-server vrf vrf-name [source-interface interface]
Description
Introduced on the S4820T.
Introduced on the Z9000.
Added support for IPv6.
Introduced on the S4810.
Authentication key length increased to 42 characters.
Introduced on the S-Series.
Introduced on the C-Series.
Introduced on the E-Series.
login authentication
— sets the database to be checked when a user logs in.
radius-server key
— sets an authentication key for RADIUS communications.
radius-server retransmit
— sets the number of times the RADIUS server attempts to send information.
radius-server timeout
— sets the time interval before the RADIUS server times out.
Security
1411

Advertisement

Table of Contents
loading

Table of Contents