Configuring Radius Authorization - Dell PowerConnect B-RX Configuration Manual

Bigiron rx series configuration guide v02.7.02
Hide thumbs Also See for PowerConnect B-RX:
Table of Contents

Advertisement

4
Configuring RADIUS security
The commands above cause RADIUS to be the primary authentication method for securing Telnet
access to the CLI. If RADIUS authentication fails due to an error with the server, local authentication
is used instead.
To create an authentication-method list that specifies RADIUS as the primary authentication
method for securing access to Privileged EXEC level and CONFIG levels of the CLI.
BigIron RX(config)# aaa authentication enable default radius local none
The command above causes RADIUS to be the primary authentication method for securing access
to Privileged EXEC level and CONFIG levels of the CLI. If RADIUS authentication fails due to an error
with the server, local authentication is used instead. If local authentication fails, no authentication
is used; the device automatically permits access.
For information on the command syntax, refer to
page 111.
NOTE
For examples of how to define authentication-method lists for types of authentication other than
RADIUS, refer to
Entering privileged EXEC mode after a Telnet or SSH login
By default, a user enters User EXEC mode after a successful login through Telnet or SSH. You can
configure the device so that a user enters Privileged EXEC mode after a Telnet or SSH login. To do
this, use the following command.
BigIron RX(config)# aaa authentication login privilege-mode
Syntax: aaa authentication login privilege-mode
The user's privilege level is based on the privilege level granted during login.
Configuring Enable authentication to prompt for password only
If Enable authentication is configured on the device, by default, a user is prompted for a username
and password. when the user attempts to gain Super User access to the Privileged EXEC and
CONFIG levels of the CLI. You can configure the device to prompt only for a password. The device
uses the username (up to 255 characters) entered at login, if one is available. If no username was
entered at login, the device prompts for both username and password.
To configure the device to prompt only for a password when a user attempts to gain Super User
access to the Privileged EXEC and CONFIG levels of the CLI.
BigIron RX(config)# aaa authentication enable implicit-user
Syntax: [no] aaa authentication enable implicit-user

Configuring RADIUS authorization

The device supports RADIUS authorization for controlling access to management functions in the
CLI. Two kinds of RADIUS authorization are supported:
104
"Configuring authentication-method lists"
Exec authorization determines a user's privilege level when they are authenticated
Command authorization consults a RADIUS server to get authorization for commands entered
by the user
"Examples of authentication-method lists"
on page 109.
BigIron RX Series Configuration Guide
on
53-1001810-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

Brocade dcx-4sBrocade dcx

Table of Contents