Prerequisites For Radius; Guidelines And Limitations; Configuring Radius Servers - Cisco AJ732A - MDS 9134 Fabric Switch Configuration Manual

Cisco nexus 5000 series switch cli software configuration guide, nx-os 4.0(1a)n1 (ol-16597-01, january 2009)
Hide thumbs Also See for AJ732A - Cisco MDS 9134 Fabric Switch:
Table of Contents

Advertisement

Prerequisites for RADIUS

S e n d f e e d b a c k t o n x 5 0 0 0 - d o c f e e d b a c k @ c i s c o . c o m
The following VSA protocol options are supported by the Nexus 5000 Series switch:
The Nexus 5000 Series switch supports the following attributes:
Prerequisites for RADIUS
RADIUS has the following prerequisites:

Guidelines and Limitations

RADIUS has the following guidelines and limitations:

Configuring RADIUS Servers

To configure RADIUS servers, perform this task:
Establish the RADIUS server connections to the Nexus 5000 Series switch.
Step 1
See the
Configure the preshared secret keys for the RADIUS servers.
Step 2
See the
Step 3
If needed, configure RADIUS server groups with subsets of the RADIUS servers for AAA
authentication methods.
See the
"Configuring AAA" section on page
If needed, configure any of the following optional parameters:
Step 4
Cisco Nexus 5000 Series Switch CLI Software Configuration Guide
17-4
Shell— Used in access-accept packets to provide user profile information.
Accounting— Used in accounting-request packets. If a value contains any white spaces, you should
enclose the value within double quotation marks.
roles—Lists all the roles to which the user belongs. The value field is a string that lists the role
names delimited by white space.
accountinginfo—Stores accounting information in addition to the attributes covered by a standard
RADIUS accounting protocol. This attribute is sent only in the VSA portion of the Account-Request
frames from the RADIUS client on the switch. It can be used only with the accounting protocol data
units (PDUs).
Obtain IPv4 or IPv6 addresses or host names for the RADIUS servers.
Obtain preshared keys from the RADIUS servers.
Ensure that the Nexus 5000 Series switch is configured as a RADIUS client of the AAA servers.
You can configure a maximum of 64 RADIUS servers on the Nexus 5000 Series switch.
"Configuring RADIUS Server Hosts" section on page
"Configuring Global Preshared Keys" section on page
"Allowing Users to Specify a RADIUS Server at Login" section on page 17-8
Dead-time interval
See the
"The following example shows how to configure periodic RADIUS server monitoring:"
section on page
17-12.
17-5.
17-6.
16-6.
Chapter 17
Configuring RADIUS
and the
OL-16597-01

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents