Primary Authentication (Radius Scheme View) - HP 5920 Command Reference Manual

Table of Contents

Advertisement

vpn-instance vpn-instance-name: Specifies the MPLS L3VPN to which the primary RADIUS accounting
server belongs, where vpn-instance-name is a case-sensitive string of 1 to 31 characters. If the server is
on the public network, do not specify this option.
Usage guidelines
Make sure the port number and shared key settings of the primary RADIUS accounting server are the
same as those configured on the server.
Two accounting servers specified for a scheme, primary or secondary, cannot have identical IP address,
port number, and VPN settings.
The shared key configured by using this command takes precedence over that configured by using the
key accounting command.
If the specified server resides on an MPLS L3VPN, specify the VPN by using the vpn-instance
vpn-instance-name option. The VPN specified by this command takes precedence over the VPN
specified for the RADIUS scheme.
If you use the primary accounting command to modify or delete the primary accounting server to which
the device is sending a start-accounting request, communication with the primary server times out, and
the device looks for an active server with the highest priority for accounting.
If you remove an accounting server being used by online users, the device no longer sends real-time
accounting requests and stop-accounting requests for the users and does not buffer the stop-accounting
requests. The device can generate incorrect accounting results.
For security purpose, all shared keys, including shared keys configured in plain text, are saved in cipher
text.
Examples
# Specify the primary accounting server with IP address 10.1 10.1.2, UDP port number 1813, and plaintext
shared key 123456 for RADIUS scheme radius1.
<Sysname> system-view
[Sysname] radius scheme radius1
[Sysname-radius-radius1] primary accounting 10.110.1.2 1813 key simple 123456
Related commands
display radius scheme
key (RADIUS scheme view)
secondary accounting (RADIUS scheme view)
vpn-instance (RADIUS scheme view)

primary authentication (RADIUS scheme view)

Use primary authentication to specify the primary RADIUS authentication server.
Use undo primary authentication to remove the configuration.
42

Advertisement

Table of Contents
loading

This manual is also suitable for:

59005920 series5900 series

Table of Contents