Attribute 15 Check-Mode - H3C MSR Series Command Reference Manual

Comware 7 security
Hide thumbs Also See for MSR Series:
Table of Contents

Advertisement

Usage guidelines
The extended accounting-on feature enhances the accounting-on feature by applying to the scenario
that an SPU reboots but the device does not reboot. For the extended accounting-on feature to take
effect, you must enable the accounting-on feature.
The extended accounting-on feature enables the device to automatically send an accounting-on
packet to the RADIUS server after an SPU reboot. The packet contains both the device and SPU
identifiers. Upon receiving the accounting-on packet, the RADIUS server logs out all online users
that access the device through the SPU. The device uses the packet retransmission interval and
maximum transmission attempts set by using the accounting-on enable command for this feature.
The extended accounting-on feature requires the RADIUS server to run on IMC.
The extended accounting-on feature is applicable to IPoE, LAN, and PPP (L2TP LAC-side) users.
Data of these users is saved to the SPUs through which the users access the device.
Execute the save command to ensure that the accounting-on extended command takes effect at
the next card reboot. For information about the save command, see Fundamentals Command
Reference.
Examples
# Enable the extended accounting-on feature for RADIUS scheme radius1.
<Sysname> system-view
[Sysname] radius scheme radius1
[Sysname-radius-radius1] accounting-on extended
Related commands
accounting-on enable
display radius scheme

attribute 15 check-mode

Use attribute 15 check-mode to configure the Login-Service attribute check method for SSH, FTP,
and terminal users.
Use undo attribute 15 check-mode to restore the default.
Syntax
attribute 15 check-mode { loose | strict }
undo attribute 15 check-mode
Default
The strict check method applies for SSH, FTP, and terminal users.
Views
RADIUS scheme view
Predefined user roles
network-admin
Parameters
loose: Matches the standard Login-Service attribute value 0 for SSH, FTP, and terminal services.
strict: Matches Login-Service attribute values 50, 51, and 52 for SSH, FTP, and terminal services,
respectively.
88

Advertisement

Table of Contents
loading

Table of Contents