Displaying And Maintaining Aaa; Configuring Radius - H3C S5500-SI Series Operation Manual

Hide thumbs Also See for S5500-SI Series:
Table of Contents

Advertisement

To do...
Tear down AAA user
connections forcibly

Displaying and Maintaining AAA

To do...
Display the configuration
information of a specified ISP
domain or all ISP domains
Display information about
specified or all user connections
Display information about
specified or all local users
Display configuration
information about a specified
user group or all user groups

Configuring RADIUS

The RADIUS protocol is configured on a per scheme basis. After creating a RADIUS scheme, you need
to configure the IP addresses and UDP ports of the RADIUS servers for the scheme. The servers
include authentication/authorization servers and accounting servers, or primary servers and secondary
servers. In other words, the attributes of a RADIUS scheme mainly include IP addresses of primary and
secondary servers, shared key, and RADIUS server type.
Actually, the RADIUS protocol configurations only set the parameters necessary for the information
interaction between a NAS and a RADIUS server. For these settings to take effect, you must reference
the RADIUS scheme containing those settings in ISP domain view. For information about the
commands for referencing a scheme, refer to
Use the command...
cut connection { access-type
{ dot1x | mac-authentication |
portal } | all | domain isp-name
| interface interface-type
interface-number | ip
ip-address | mac mac-address |
ucibindex ucib-index |
user-name user-name | vlan
vlan-id }
Use the command...
display domain [ isp-name ]
display connection [
access-type
{ dot1x | mac-authentication | portal } |
domain isp-name |
interface
interface-type interface-number | ip
ip-address | mac mac-address |
ucibindex ucib-index | user-name
user-name
| vlan vlan-id ]
display local-user [ idle-cut
{ disable | enable } | service-type
{ ftp | lan-access | portal | ssh |
telnet | terminal } | state { active |
block } | user-name user-name |
vlan vlan-id ]
display user-group [ group-name ]
Configuring
AAA.
1-22
Remarks
Required
Applies to only LAN access and
portal user connections at
present
Remarks
Available in any view
Available in any view
Available in any view
Available in any view

Advertisement

Chapters

Table of Contents
loading

Table of Contents