D-Link DGS-510 Reference Manual page 97

Gigabit ethernet smartpro switch
Table of Contents

Advertisement

DGS-1510 Series Gigabit Ethernet SmartPro Switch CLI Reference Guide
continues until there is successful communication with a listed authentication method or all methods
defined in the method list are exhausted.
It is important to note that the switch system attempts authentication with the next listed authentication
method only when there is no response from the previous method. If authentication fails at any point
in this cycle, meaning that the security server or local username database responds by denying the
user access, the authentication process stops and no other authentication methods are attempted.
Example
This example shows how to set the default login methods list for authenticating of login attempts.
Switch#configure terminal
Switch(config)# aaa authentication login default group group2 local
Switch(config)#
8-9
aaa authentication mac-auth
This command is used to configure the default method list used for MAC authentication. Use the no
form of this command to remove the default method list.
aaa authentication mac-auth default METHOD1 [METHOD2...]
no aaa authentication mac-auth default
Parameters
METHOD1 [METHOD2...]
Default
No AAA authentication method is configured.
Command Mode
Global Configuration Mode.
Command Default Level
Level: 15.
Usage Guideline
Use this command to configure the default authentication method list for MAC authentication. Initially,
the default method list is not configured. The authentication of MAC request will be performed based
on the local database.
Example
This example shows how to set the default methods list for authenticating mac-auth users.
Specifies the list of methods that the authentication algorithm tries
in the given sequence. Enter at least one method or enter up to four
methods. The following are keywords that can be used to specify a
method.
local – Specifies to use the local database for authentication.
group radius – Specifies to use the servers defined by the RADIUS
server host command.
group GROUP-NAME – Specifies to use the server groups defined
by the AAA group server.
none - Normally, the method is listed as the last method. The user
will pass authentication if it is not denied by previous method
authentication.
94

Advertisement

Table of Contents
loading

Table of Contents