Example
The following example configures authentication login.
console(config)# aaa authentication login default radius local
enable none
aaa authorization network default radius
Use the aaa authorization network default radius command in Global Configuration mode to
enable the switch to accept VLAN assignment by the RADIUS server.
Syntax
aaa authorization network default radius
no aaa authorization network default radius
•
default — Name of the authorization list
•
radius — Name of the authorization method
Default Configuration
By default, the switch does not accept VLAN assignments by the RADIUS server.
Command Mode
Global Configuration mode
User Guidelines
The RADIUS server can place a port in a particular VLAN based on the result of the
authentication. VLAN assignment must be configured on the external RADIUS server.
Example
The following example enables RADIUS-assigned VLANs.
console(config)#aaa authorization network default radius
enable authentication
Use the enable authentication command in Line Configuration mode to specify the
authentication method list when accessing a higher privilege level from a remote telnet or
console. To return to the default specified by the enable authentication command, use the no
form of this command.
Syntax
enable authentication {default|
list-name
}
151
AAA Commands