Ead Configuration Example - Huawei Quidway S5600 Series Operation Manual

Hide thumbs Also See for Quidway S5600 Series:
Table of Contents

Advertisement

Operation Manual – AAA & RADIUS & HWTACACS & EAD
Quidway S5600 Series Ethernet Switches-Release 1510
Operation
Configure the RADIUS
server type to huawei
Configure the IP address
for the security policy
server

2.4 EAD Configuration Example

I. Network requirements
In Figure 2-2:
A user is connected to GigabitEthernet1/0/1 of the switch
The user adopts 802.1X client supporting EAD extended function
By configuring the switch, user remote authentication is implemented through
RADIUS server and EAD control is achieved through security policy server.
The following are the configuration tasks:
Connect the authentication server (RADIUS server) and the switch. The IP
address of the server is 10.110.91.164, and the switch adopts the port with port
number 1812 to communicate with the authentication server.
Configure the authentication server type to huawei.
Configure the encryption password for exchanging messages between the switch
and RADIUS server to "expert".
Configure the IP address of the security policy server to 10.110.91.166.
Command
server-type huawei
security-policy-server
ip-address
Huawei Technologies Proprietary
2-3
Chapter 2 EAD Configuration
Description
Required
By default, for a new
RADIUS scheme, the
server type is standard;
The type of RADIUS
server in the default
RADIUS
scheme
"system" is huawei.
Required
Each RADIUS scheme
can support up to 8 IP
addresses of security
policy servers.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents