Configuring Radius Accounting Servers - H3C S5100-SI Operation Manual

Ethernet switches
Hide thumbs Also See for H3C S5100-SI:
Table of Contents

Advertisement

As shown in
Figure
For easy management, the RADIUS server issues the same authorization attributes to all the users.
However, users attached to NAS 1 need these attributes while users attached to NAS 2 do not want to
use the assigned Attribute 28, idle-timeout. You can configure the attribute ignoring function on NAS 2
to ignore Attribute 28.
Figure 2-1 Network diagram for the RADIUS authorization attribute ignoring function
NAS 1
Host 1
Follow these steps to configure the RADIUS authorization attribute ignoring function:
To do...
Enter system view
Create a RADIUS
scheme and enter its
view
Configure the RADIUS
authorization attribute
ignoring function
In a RADIUS scheme, you can configure:
One standard attribute ignoring command
One proprietary attribute ignoring command per vendor
Up to three attribute ignoring commands in total

Configuring RADIUS Accounting Servers

Follow these steps to configure RADIUS accounting servers:
To do...
Enter system view
2-1, NAS 1 and NAS 2 are connected to the same RADIUS server for authentication.
IP network
Switch
Use the command...
system-view
radius scheme
radius-scheme-name
attribute-ignore { standard
| vendor vendor-id } type
type-value
Use the command...
system-view
RADIUS server
NAS 2
Host 2
Required
By default, a RADIUS scheme named
"system" has already been created in
the system.
Required
Disabled by default.
2-12
Remarks
Remarks

Advertisement

Table of Contents
loading

This manual is also suitable for:

H3c s5100-ei

Table of Contents