Setting The Radius Server Timeout Interval; Setting Iterations Of The Radius Server; Defining Vendor-Specific Attributes - Cisco DS-X9530-SF1-K9 - Supervisor-1 Module - Control Processor Configuration Manual

Mds 9000 family
Table of Contents

Advertisement

Chapter 28
Configuring RADIUS and TACACS+
S e n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a c k - d o c @ c i s c o . c o m .
To set the RADIUS preshared key, follow these steps:
Command
Step 1
switch# config t
Step 2
switch(config)# radius-server key AnyWord
switch(config)# radius-server key 0
AnyWord
switch(config)# radius-server key 7
abe4DFeeweo00o

Setting the RADIUS Server Timeout Interval

To specify the time between retransmissions to the RADIUS servers, follow these steps:
Command
Step 1
switch# config t
Step 2
switch(config)# radius-server
timeout 30
switch(config)# no
radius-server timeout 30

Setting Iterations of the RADIUS Server

By default, a switch retries a RADIUS server only once. This number can be configured. The maximum
is five retries per server.
You can revert the retry number to its default by issuing the no radius-server retransmit command.
To specify the number of times that RADIUS servers should try to authenticate a user, follow these steps:
Command
Step 1
switch# config t
Step 2
switch(config)# radius-server retransmit 3

Defining Vendor-Specific Attributes

The Internet Engineering Task Force (IETF) draft standard specifies a method for communicating
vendor-specific attributes (VSAs) between the network access server and the RADIUS server. The IETF
uses attribute 26. VSAs allow vendors to support their own extended attributes that are not suitable for
OL-8222-01, Cisco MDS SAN-OS Release 3.x
Purpose
Enters configuration mode.
Configures a preshared key (AnyWord) to
authenticate communication between the RADIUS
client and server. The default is clear text.
Configures a preshared key (AnyWord) specified in
clear text (indicated by 0) to authenticate
communication between the RADIUS client and
server.
Configures a preshared key (specified in encrypted
text) specified in encrypted text (indicated by 7) to
authenticate communication between the RADIUS
client and server.
Purpose
Enters configuration mode.
Specifies the time (in seconds) between retransmissions to the
RADIUS server. The default timeout is one (1) second. The time
ranged from 1 to 60 seconds.
Reverts the transmission time to its default (1) second.
Purpose
Enters configuration mode.
Configures the number of times (3) the switch tries
to connect to a RADIUS server(s) before reverting
to local authentication.
Cisco MDS 9000 Family CLI Configuration Guide
Configuring RADIUS
28-7

Advertisement

Table of Contents
loading
Need help?

Need help?

Do you have a question about the DS-X9530-SF1-K9 - Supervisor-1 Module - Control Processor and is the answer not in the manual?

Questions and answers

Table of Contents