3Com SuperStack 4 Configuration Manual page 267

5500g-ei family
Hide thumbs Also See for SuperStack 4:
Table of Contents

Advertisement

Configuring the RADIUS
Protocol
Creating/Deleting a
RADIUS Scheme
Table 312 Disconnecting a User by Force
Operation
Command
Disconnect a user by
cut connection { all | access-type { dot1x | gcm |
force
mac-authentication } | domain
interface
ip_address
radius_scheme_name
ucib_index
By default, no online user will be disconnected by force.
For the Switch 5500G-EI, the RADIUS protocol is configured on the per RADIUS
scheme basis. In a real networking environment, a RADIUS scheme can be an
independent RADIUS server or a set of primary/secondary RADIUS servers with the
same configuration but two different IP addresses. Accordingly, attributes of every
RADIUS scheme include IP addresses of primary and secondary servers, shared key
and RADIUS server type, etc.
RADIUS protocol configuration only defines some necessary parameters used for
information interaction between NAS and RADIUS Server. To make these
parameters effective, it is necessary to configure, in the view, an ISP domain to use
the RADIUS scheme and specify it to use RADIUS AAA schemes. For more
information about the configuration commands, refer to the AAA Configuration
section above.
RADIUS protocol configuration includes:
Creating/Deleting a RADIUS Scheme
Configuring RADIUS Authentication/ Authorization Servers
Configuring RADIUS Accounting Servers and the Related Attributes
Setting the RADIUS Packet Encryption Key
Setting Retransmission Times of RADIUS Request Packet
Setting the Supported Type of the RADIUS Server
Setting the RADIUS Server State
Setting the Username Format Transmitted to the RADIUS Server
Configuring the Local RADIUS Authentication Server
Configuring Source Address for RADIUS Packets Sent by NAS
Setting the Timers of the RADIUS Server
Among the above tasks, creating the RADIUS scheme and setting the IP address of
the RADIUS server are required, while other tasks are optional and can be
performed as per your requirements.
As mentioned above, RADIUS protocol configurations are performed on the per
RADIUS scheme basis. Therefore, before performing other RADIUS protocol
configurations, it is essential to create the RADIUS scheme and enter its view to set
its IP address.
You can use the following commands to create/delete a RADIUS scheme.
AAA and RADIUS Protocol Configuration
interface_type interface_number
mac_address
| mac
vlanid
| vlan
| user-name
user_name
domain_name
|
| ip
| radius-scheme
| ucibindex
}
279

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Superstack 4 5500g-ei series

Table of Contents