HP 12500 Series Configuration Manual page 37

Routing
Table of Contents

Advertisement

RADIUS does not support accounting for FTP users.
To specify RADIUS accounting servers and set relevant parameters for a scheme:
Step
1.
Enter system view.
2.
Enter RADIUS scheme
view.
3.
Specify RADIUS
accounting servers.
4.
Set the maximum number
of real-time accounting
attempts.
5.
Enable buffering of
stop-accounting requests to
which no responses are
received.
6.
Set the maximum number
of stop-accounting
attempts.
Specifying the shared keys for secure RADIUS communication
The RADIUS client and RADIUS server use the MD5 algorithm to encrypt packets exchanged between
them and use shared keys to authenticate the packets. They must use the same shared key for the same
type of packets.
A shared key configured in this task is for all servers of the same type (accounting or authentication) in
the scheme, and has a lower priority than a shared key configured individually for a RADIUS server.
To specify shared keys for secure RADIUS communication:
Step
1.
Enter system view.
2.
Enter RADIUS scheme view.
3.
Specify a shared key for secure RADIUS
authentication/authorization or
accounting communication.
Command
system-view
radius scheme radius-scheme-name
Specify the primary RADIUS accounting
server:
primary accounting { ip-address | ipv6
ipv6-address } [ port-number | key [ cipher |
simple ] key | vpn-instance
vpn-instance-name ] *
Specify a secondary RADIUS accounting
server:
secondary accounting { ip-address | ipv6
ipv6-address } [ port-number | key [ cipher |
simple ] key | vpn-instance
vpn-instance-name ] *
retry realtime-accounting retry-times
stop-accounting-buffer enable
retry stop-accounting retry-times
Command
system-view
radius scheme
radius-scheme-name
key { accounting |
authentication } [ cipher | simple ]
key
27
Remarks
N/A
N/A
Configure at least one
command.
No accounting server is
specified by default.
Optional.
5 by default.
Optional.
Enabled by default.
Optional.
500 by default.
Remarks
N/A
N/A
No shared key by default.
Configure the same
shared key as that
configured on the RADIUS
server.

Advertisement

Table of Contents
loading

Table of Contents