H3C IE4300 Command Reference Manual page 1795

Industrial switch series
Hide thumbs Also See for IE4300:
Table of Contents

Advertisement

undo authentication login
Default
The default authentication methods of the ISP domain are used for login users.
Views
ISP domain view
Predefined user roles
network-admin
Parameters
hwtacacs-scheme hwtacacs-scheme-name
a case-insensitive string of 1 to 32 characters.
ldap-scheme ldap-scheme-name
string of 1 to 32 characters.
: Performs local authentication.
local
: Does not perform authentication.
none
radius-scheme radius-scheme-name
case-insensitive string of 1 to 32 characters.
Usage guidelines
You can specify one primary authentication method and multiple backup authentication methods.
When the primary method is invalid, the device attempts to use the backup methods in sequence.
For example, the
command specifies the default primary RADIUS authentication method and two backup
none
methods (local authentication and no authentication). The device performs RADIUS authentication
by default and performs local authentication when the RADIUS server is invalid. The device does not
perform authentication when both of the previous methods are invalid.
Examples
# In ISP domain test, perform local authentication for login users.
<Sysname> system-view
[Sysname] domain test
[Sysname-isp-test] authentication login local
# In ISP domain test, perform RADIUS authentication for login users based on scheme rd and use
local authentication as the backup.
<Sysname> system-view
[Sysname] domain test
[Sysname-isp-test] authentication login radius-scheme rd local
Related commands
authentication default
hwtacacs scheme
ldap scheme
local-user
radius scheme
authentication login radius-scheme radius-scheme-name local
: Specifies an HWTACACS scheme by its name,
: Specifies an LDAP scheme by its name, a case-insensitive
: Specifies a RADIUS scheme by its name, a
14

Advertisement

Table of Contents
loading

This manual is also suitable for:

Ie4300-mIe4320

Table of Contents