Configuring Settings For All Radius Servers - Cisco M10-RM Software Manual

Cisco ios releases 12.4(10b)ja and 12.3(8)jec
Hide thumbs Also See for M10-RM:
Table of Contents

Advertisement

Chapter 13
Configuring RADIUS and TACACS+ Servers

Configuring Settings for All RADIUS Servers

Beginning in privileged EXEC mode, follow these steps to configure global communication settings
between the access point and all RADIUS servers:
Command
Step 1
configure terminal
Step 2
radius-server key string
Step 3
radius-server retransmit retries
Step 4
radius-server timeout seconds
Step 5
radius-server deadtime minutes
Step 6
radius-server attribute 32
include-in-access-req format %h
Step 7
end
Step 8
show running-config
Step 9
copy running-config startup-config
OL-14209-01
Purpose
Enter global configuration mode.
Specify the shared secret text string used between the access point and all
RADIUS servers.
The key is a text string that must match the encryption key used on
Note
the RADIUS server. Leading spaces are ignored, but spaces within
and at the end of the key are used. If you use spaces in your key, do
not enclose the key in quotation marks unless the quotation marks
are part of the key.
Specify the number of times the access point sends each RADIUS request
to the server before giving up. The default is 3; the range 1 to 1000.
Specify the number of seconds an access point waits for a reply to a
RADIUS request before resending the request. The default is 5 seconds; the
range is 1 to 1000.
Use this command to cause the Cisco IOS software to mark as "dead" any
RADIUS servers that fail to respond to authentication requests, thus
avoiding the wait for the request to time out before trying the next
configured server. A RADIUS server marked as dead is skipped by
additional requests for the duration of minutes that you specify, up to a
maximum of 1440 (24 hours).
Note
This command is required configuration when multiple RADIUS
servers are defined. If not configured, client authentication does not
occur. When one RADIUS server is defined, this command is
optional.
Configure the access point to send its system name in the NAS_ID attribute
for authentication.
Return to privileged EXEC mode.
Verify your settings.
(Optional) Save your entries in the configuration file.
Cisco IOS Software Configuration Guide for Cisco Aironet Access Points
Configuring and Enabling RADIUS
13-15

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Aironet series

Table of Contents