Foundry Networks Switch and Router Installation And Configuration Manual page 110

Switch and router
Table of Contents

Advertisement

Foundry Switch and Router Installation and Configuration Guide
NOTE: RADIUS authorization is performed only for commands entered from Telnet or SSH sessions. No
authorization is performed for commands entered at the console, the Web management interface, or
IronView.
NOTE: Since RADIUS authorization relies on the command list supplied by the RADIUS server during
authentication, you cannot perform RADIUS authorization without RADIUS authentication.
NOTE: A user's privilege level is set during RADIUS authentication, not by configuring RADIUS Exec
authorization. Selecting RADIUS Exec authorization on the Authorization Method panel is ignored by the
system.
24. Click on the radio button next to Radius.
25. Click the Add button to save the change to the device's running-config file.
The authorization method you selected are displayed in the table at the top of the dialog. Each time you add
an authorization method for a given access type, the software assigns a sequence number to the entry.
When authorization is performed, the software tries the authorization sources in ascending sequence order
until the request is either approved or denied. Each time you add an entry for a given access type, the
software increments the sequence number. Thus, if you want to use multiple authentication methods, make
sure you enter the primary authentication method first, the secondary authentication method second, and so
on.
If you need to delete an entry, select the access type and authorization method for the entry, then click Delete.
26. To configure RADIUS accounting, select the Management link to display the Management panel and select
the Accounting Methods link to display the Accounting Method panel, as shown in the following example.
27. To send an Accounting Start packet to the RADIUS accounting server when an authenticated user
establishes a Telnet or SSH session on the Foundry device, and an Accounting Stop packet when the user
logs out, select Exec from the Type field's pulldown menu.
28. To configure RADIUS accounting for CLI commands, select Commands from the Type field's pulldown menu
and select a privilege level by clicking on one of the following radio buttons:
3 - 46
December 2000

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents