Extreme Networks ExtremeWare XOS Guide Manual page 324

Concepts guide
Hide thumbs Also See for ExtremeWare XOS Guide:
Table of Contents

Advertisement

Security
To enable RADIUS authentication, use the following command:
enable radius {mgmt-access | netlogin}
If you do not specify the
switch for both management and network login.
To disable RADIUS authentication, use the following command:
disable radius {mgmt-access | netlogin}
If you do not specify the
the switch for both management and network login.
Configuring RADIUS Accounting
Extreme Networks switches are capable of sending RADIUS accounting information. As with RADIUS
authentication, you can specify two servers for receipt of accounting information.
To specify RADIUS accounting servers, use the following command:
configure radius-accounting {mgmt-access | netlogin} [primary | secondary] server
[<ipaddress> | <hostname>] {<tcp_port>} client-ip [<ipaddress>] {vr <vr_name>}
To configure the primary RADIUS accounting server, specify
RADIUS accounting server, specify
By default, switch management and network login use the same primary and secondary RADIUS
servers for accounting. To specify one pair of RADIUS accounting servers for switch management and
another pair for network login, make sure to specify the
Configuring the RADIUS Accounting Timeout Value
To configure the timeout if a server fails to respond, use the following command:
configure radius-accounting {mgmt-access | netlogin} timeout <seconds>
If the timeout expires, another authentication attempt will be made. After three failed attempts to
authenticate, the alternate server will be used.
Configuring the Shared Secret Password for RADIUS Accounting Servers
RADIUS accounting also uses the shared secret password mechanism to validate communication
between network access devices and RADIUS accounting servers.
To specify shared secret passwords for RADIUS accounting servers, use the following command:
configure radius-accounting {mgmt-access | netlogin} [primary | secondary] shared-
secret {encrypted} <string>
To configure the primary RADIUS accounting server, specify
RADIUS accounting server, specify
If you do not specify the
secondary switch management and netlogin RADIUS accounting servers.
324
or
mgmt-access
netlogin
or
mgmt-access
netlogin
.
secondary
.
secondary
or
mgmt-access
netlogin
keywords, RADIUS authentication is enabled on the
keywords, RADIUS authentication is disabled on
. To configure the secondary
primary
or
mgmt-access
netlogin
. To configure the secondary
primary
keywords, the secret applies to both the primary or
ExtremeWare XOS 11.3 Concepts Guide
keywords.

Advertisement

Table of Contents
loading

This manual is also suitable for:

Extremeware xos 11.3

Table of Contents