Configuring The Switch For Local Authentication And Authorization - Cisco IE-4000 Software Configuration Manual

Industrial ethernet switch
Hide thumbs Also See for IE-4000:
Table of Contents

Advertisement

Configuring Switch-Based Authentication
How to Configure Switch-Based Authentication
Command
4.
client {ip-address | name} [vrf vrfname]
[server-key string]
5.
server-key [0 | 7] string
6.
port port-number
7.
auth-type {any | all | session-key}
8.
ignore session-key
9.
ignore server-key
10.
authentication command bounce-port
ignore
11.
authentication command disable-port
ignore
12.
end

Configuring the Switch for Local Authentication and Authorization

Command
1.
configure terminal
2.
aaa new-model
3.
aaa authentication login default
local
4.
aaa authorization exec local
5.
aaa authorization network local
Purpose
Enters dynamic authorization local server configuration mode and
specifies a RADIUS client from which a device will accept CoA and
disconnect requests.
Configures the RADIUS key to be shared between a device and RADIUS
clients.
Specifies the port on which a device listens for RADIUS requests from
configured RADIUS clients.
Specifies the type of authorization the switch uses for RADIUS clients.
The client must match all the configured attributes for authorization.
(Optional) Configures the switch to ignore the session-key.
(Optional) Configures the switch to ignore the server-key.
(Optional) Configures the switch to ignore a CoA request to temporarily
disable the port hosting a session. The purpose of temporarily disabling
the port is to trigger a DHCP renegotiation from the host when a VLAN
change occurs and there is no supplicant on the endpoint to detect the
change.
(Optional) Configures the switch to ignore a nonstandard command
requesting that the port hosting a session be administratively shut down.
Shutting down the port results in termination of the session.
Uses standard CLI or SNMP commands to reenable the port.
Returns to privileged EXEC mode.
Purpose
Enters global configuration mode.
Enables AAA.
Sets the login authentication to use the local username database. The default
keyword applies the local user database authentication to all ports.
Configures user AAA authorization, checks the local database, and allows the
user to run an EXEC shell.
Configures user AAA authorization for all network-related service requests.
178

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Ie-5000Ie-4010

Table of Contents