Radius Client - HP A5500 EI Command Reference Manual

Hide thumbs Also See for A5500 EI:
Table of Contents

Advertisement

By default, no primary RADIUS authentication/authorization server is specified.
After creating a RADIUS scheme, you are supposed to configure the IP address and UDP port of each
RADIUS server (primary/secondary authentication/authorization or accounting server). Ensure that at
least one authentication/authorization server and one accounting server are configured, and that the
RADIUS service port settings on the device are consistent with the port settings on the RADIUS servers.
The shared key configured on the device for authentication/authorization packets and that configured on
the RADIUS server must be consistent.
The IP addresses of the primary and secondary authentication/authorization servers cannot be the same.
Otherwise, the configuration fails.
The IP addresses of the primary and secondary authentication/authorization servers must be of the same
IP version.
The IP addresses of the authentication/authorization servers and those of the accounting servers must be
of the same IP version.
The VPN specified here takes precedence over the VPN specified for the RADIUS scheme.
In an authentication process, if you remove the primary authentication server, the communication with the
original primary server will time out, and the device will look for a server in active state from scratch: the
new primary server is evaluated at first and then the secondary servers according to the order in which
they are configured.
NOTE:
The shared key configured by this command takes precedence over that configured by using the key
authentication
Related commands: key, radius scheme, state, and vpn-instance (RADIUS scheme view).
Examples
# Specify the primary authentication/authorization server for RADIUS scheme radius1.
<Sysname> system-view
[Sysname] radius scheme radius1
[Sysname-radius-radius1] primary authentication 10.110.1.1 1812

radius client

Syntax
radius client enable
undo radius client
View
System view
Default level
2: System level
Parameters
None
Description
Use the radius client enable command to enable the listening port of the RADIUS client.
string
command.
52

Advertisement

Table of Contents
loading

This manual is also suitable for:

A5500 si

Table of Contents