Cisco WS-C6506 Software Manual page 964

Catalyst 6500 series switch
Hide thumbs Also See for WS-C6506:
Table of Contents

Advertisement

Configuring Authentication on the Switch
This example shows how to specify the RADIUS retransmit count and verify the configuration:
Console> (enable) set radius retransmit 4
Radius retransmit count set to 4.
Console> (enable) show radius
Login Authentication:
---------------------
tacacs
radius
local
Enable Authentication: Console Session
---------------------- ----------------- ----------------
tacacs
radius
local
Radius Deadtime:
Radius Key:
Radius Retransmit:
Radius Timeout:
Radius-Server
----------------------------- -------
172.20.52.3
Console> (enable)
Specifying the RADIUS Dead Time
You can configure the switch so that, when a RADIUS server does not respond to an authentication
request, the switch marks that server as dead for the length of time that is specified by the dead time.
Any authentication requests that are received during the dead time interval (such as other users
attempting to log in to the switch) are not sent to a RADIUS server that is marked dead. Configuring a
dead time speeds up the authentication process by eliminating the timeouts and the retransmissions to
the dead RADIUS server.
If you configure only one RADIUS server, or if all of the configured servers are marked dead, the dead
time is ignored because no alternate servers are available.
To set the RADIUS dead time, perform this task in privileged mode:
Task
Step 1
Specify the RADIUS server dead time.
Step 2
Verify the RADIUS configuration.
This example shows how to specify the RADIUS dead time and verify the configuration:
Console> (enable) set radius deadtime 5
Radius deadtime set to 5 minute(s)
Console> (enable) show radius
Login Authentication:
---------------------
tacacs
radius
local
Catalyst 6500 Series Switch Software Configuration Guide—Release 8.7
39-30
Console Session
Telnet Session
----------------
----------------
disabled
disabled
enabled(primary)
enabled(primary)
enabled
enabled
Telnet Session
disabled
disabled
enabled(primary)
enabled(primary)
enabled
enabled
0 minutes
Secret_RADIUS_key
4
10 seconds
Status
Auth-port
------------
primary
1812
Command
set radius deadtime minutes
show radius
Console Session
Telnet Session
----------------
----------------
disabled
disabled
enabled(primary)
enabled(primary)
enabled
enabled
Chapter 39
Configuring the Switch Access Using AAA
OL-8978-04

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Catalyst 6506Catalyst 6509Catalyst 6513

Table of Contents