When serving as a local RADIUS server, the switch does not support EAP authentication (that is
you
cannot
authentication-method eap command).
Related commands: radius scheme, state, local-server enable.
Examples
# Allow the local RADIUS server to provide services to NAS 10.110.1.2 with shared key aabbcc.
<Sysname> system-view
System View: return to User View with Ctrl+Z.
[Sysname] local-server nas-ip 10.110.1.2 key aabbcc
nas-ip
Syntax
nas-ip ip-address
undo nas-ip
View
RADIUS scheme view
Parameters
ip-address: Source IP address for RADIUS messages, an IP address of this device. This address can
neither be the all 0's address nor be a Class-D address.
Description
Use the nas-ip command to set the source IP address of outgoing RADIUS messages.
Use the undo nas-ip command to remove the source IP address setting.
By default, the IP address of the outbound interface is used as the source IP address of RADIUS
messages.
The nas-ip command in RADIUS scheme view has the same function as the radius nas-ip command
in system view; and the configuration in RADIUS scheme view takes precedence over that in system
view.
You can set the source IP address of outgoing RADIUS messages to avoid messages returned from
RADIUS server from being unable to reach their destination due to physical interface trouble. It is
recommended to use a Loopback interface address as the source IP address.
Related commands: display radius scheme, radius nas-ip.
Examples
# Set source IP address 10.1.1.1 for outgoing RADIUS messages in RADIUS scheme radius1.
<Sysname> system-view
set
the
802.1x
authentication
method
as
1-38
by
using
the
eap
dot1x
Need help?
Do you have a question about the s3600 series and is the answer not in the manual?
Questions and answers