Apply The Method List To Terminal Lines; Specify A Radius Server Host - Dell Force10 Z9000 Configuration Manual

Ftos configuration guide for z9000 system
Hide thumbs Also See for Force10 Z9000:
Table of Contents

Advertisement

Apply the method list to terminal lines

To enable RADIUS AAA login authentication for a method list, you must apply it to a terminal line. To
configure a terminal line for RADIUS authentication and authorization, enter the following commands:
Command Syntax
line {aux 0 | console 0 | vty number
[end-number]}
login authentication
{method-list-name | default}
authorization exec methodlist

Specify a RADIUS server host

When configuring a RADIUS server host, you can set different communication parameters, such as the
UDP port, the key password, the number of retries, and the timeout.
To specify a RADIUS server host and configure its communication parameters, use the following
command in the CONFIGURATION mode:
Command Syntax
radius-server host {hostname |
ip-address} [auth-port
port-number] [retransmit retries]
[timeout seconds] [key
[encryption-type] key]
To specify multiple RADIUS server hosts, configure the
multiple RADIUS server hosts are configured, FTOS attempts to connect with them in the order in which
they were configured. When FTOS attempts to authenticate a user, the software connects with the
RADIUS server hosts one at a time, until a RADIUS server host responds with an accept or reject
response.
If you want to change an optional parameter setting for a specific host, use the
command. To change the global communication settings to all RADIUS server hosts, refer to
communication parameters for all RADIUS server hosts on page
Command Mode
CONFIGURATION
LINE
CONFIGURATION
Command Mode
Purpose
CONFIGURATION
Enter the host name or IP address of the RADIUS server
host. Configure the optional communication parameters
for the specific host:
If these optional parameters are not configured, the
global default values for all RADIUS host are applied.
Purpose
Enter the LINE mode.
Enable AAA login authentication for the specified
RADIUS method list. This procedure is mandatory if
you are not using default lists.
To use the methodlist.
auth-port port-number range: 0 to 65335. Enter a
UDP port number. The default is 1812.
retransmit retries range: 0 to 100. Default is 3.
timeout seconds range: 0 to 1000. Default is 5
seconds.
key [encryption-type] key: Enter 0 for plain text or
7 for encrypted text, and a string for the key. The key
can be up to 42 characters long. This key must match
the key configured on the RADIUS server host.
radius-server host
command multiple times. If
radius-server host
798.
Set global
Security | 797

Advertisement

Table of Contents
loading

Table of Contents