Radius-Server Vrf - Dell S4810 Reference Manual

Hide thumbs Also See for S4810:
Table of Contents

Advertisement

the timeout, retransmit, or key values, include those keywords when using the
no radius-server host command syntax.
You can use duplicate host names or IP addresses among RADIUS groups.
However, you cannot use duplicate host names or IP addresses within the same
RADIUS group. If a VRF is not configured on the RADIUS group, then servers
configured in the group are considered to be on the default VRF. RADIUS servers
that are configured in the CONFIGURATION mode are also considered to be on
the default VRF.
You must configure the RADIUS group explicitly with the aaa radius group
command in order for the AAA servers to use the group of RADIUS servers. The
802.1x servers use the group of RADIUS servers based on the VRF where the 802.1x
request is received. As a result, it is possible that both globally configured RADIUS
servers as well as the group-configured RADIUS servers (without VRF or default
VRF) are used for processing the 802.1x requests that are received at the default
VRF. The order in which the RADIUS servers are tried depends on the order in
which the RADIUS servers are configured.
Example
Dell(conf)#radius-server group group1
Dell(conf-radius-group)#radius-server host 1.1.1.1 key secret
Dell(conf-radius-group)#no radius-server host 1.1.1.1
Related
login authentication
Commands
radius-server key
radius-server retransmit
send information.
radius-server timeout

radius-server vrf

Create an association between a RADIUS server group and a VRF and source interface..
S4810
Syntax
radius-server vrf vrf-name [source-interface interface]
To delete the association between a RADIUS server group and a VRF and source
interface, use the no radius-server vrf vrf-name [source-interface
interface] command.
Parameters
vrf vrf-name
interface
Security
— sets the database to be checked when a user logs in.
— sets an authentication key for RADIUS communications.
— sets the number of times the RADIUS server attempts to
— sets the time interval before the RADIUS server times out.
Enter the keyword vrf and then the name of the VRF to
associate a RADIUS server group with that VRF.
Enter the following keywords and slot/port or number
information:
For a 100/1000 Ethernet interface, enter the keyword
GigabitEthernet then the slot/port information.
1475

Advertisement

Table of Contents
loading

Table of Contents