Local-Server - Huawei Quidway S8500 Series Command Manual

Routing switches
Hide thumbs Also See for Quidway S8500 Series:
Table of Contents

Advertisement

Command Manual – Security
Quidway S8500 Series Routing Switches
View
RADIUS scheme view
Parameter
accounting: Configures to set the encryption key for RADIUS accounting packet.
authentication:
authentication/authorization packet.
string: Specifies the key with a character string not exceeding 16 characters. By default,
the key is huawei.
Description
Use
the
authentication/authorization or accounting packet.
Use the undo key command, you can restore the default key.
RADIUS client (switch system) and RADIUS scheme use MD5 algorithm to encrypt the
exchanged packets. The two ends verify the packet through setting the encryption key.
Only when the keys are identical can both ends accept the packets from each other and
give responses. So it is necessary to ensure that the keys set on the switch and the
RADIUS scheme are identical. If the authentication/authorization and accounting are
performed on two different servers with different encryption keys, you are supposed to
set two encryption keys respectively.
Related command: primary accounting, primary authentication, radius scheme.
Example
# Set the authentication/authorization key of the RADIUS scheme, huawei, to hello.
[Quidway-radius-huawei] key authentication hello
# Set the accounting packet key of the RADIUS scheme, huawei, to ok.
[Quidway-radius-huawei] key accounting ok

2.2.10 local-server

Syntax
local-server nas-ip ip-address key password
undo local-server nas-ip ip-address
View
System view
Configures
to
command
to
key
Huawei Technologies Proprietary
2-31
Chapter 2 AAA and RADIUS/HWTACACS Protocol
set
the
encryption
configure
encryption
Configuration Commands
key
for
RADIUS
key
for
RADIUS

Advertisement

Table of Contents
loading

Table of Contents