authorization dvpn
Use authorization dvpn to configure the authorization method for DVPN users.
Use undo authorization dvpn to restore the default.
Syntax
authorization dvpn { local | none | radius-scheme radius-scheme-name [ local ] }
undo authorization dvpn
Default
The default authorization method for the ISP domain is used for DVPN users.
Views
ISP domain view
Default command level
2: System level
Parameters
local: Performs local authorization.
none: Does not perform any authorization exchange. In this case, an authenticated LAN user can
access the network directly.
radius-scheme radius-scheme-name: Specifies a RADIUS scheme by its name, a case-insensitive
string of 1 to 32 characters.
Usage guidelines
The specified RADIUS scheme must have been configured.
The RADIUS authorization configuration takes effect only when the authentication method and
authorization method of the ISP domain use the same RADIUS scheme.
Examples
# Configure ISP domain test to use local authorization for DVPN users.
<Sysname> system-view
[Sysname] domain test
[Sysname-isp-test] authorization dvpn local
# Configure ISP domain test to use RADIUS authorization scheme rd for DVPN users and use local
authorization as the backup.
<Sysname> system-view
[Sysname] domain test
[Sysname-isp-test] authorization dvpn radius-scheme rd local
Related commands
•
local-user
•
authorization default
•
radius scheme
authorization lan-access
Use authorization lan-access to configure the authorization method for LAN users.
Use undo authorization lan-access to restore the default.
17