Alaxala AX2200S Series Configuration Manual page 116

Table of Contents

Advertisement

8 Login Security and RADIUS
The usual setup for remote access must be completed in advance.
Command examples
1.
(config)# aaa authentication login default group radius local
Specifies RADIUS authentication and local password authentication in that order as
the login authentication methods.
2.
(config)# aaa authentication login end-by-reject
Configures the settings so that the authentication process ends when denied by
RADIUS authentication and local authentication is not performed.
3.
(config)# radius-server host 192.168.10.1 key "AAAA1234"
Sets IP address 192.168.10.1 as the general-use RADIUS server to be used for
RADIUS authentication and sets a shared key for communication with the server.
4.
(config)# radius-server host 192.168.10.2 key "BBBB1234"
Sets IP address 192.168.10.2 as the general-use RADIUS server to be used for
RADIUS authentication and sets a shared key for communication with the server.
Note
1.
(2) Setting of RADIUS server group authentication and local password
authentication
Points to note
In these examples, RADIUS server group authentication and local password
authentication are configured as authentication methods. The methods are
configured so that if RADIUS server group authentication fails due to an inability to
communicate, such as the RADIUS server not responding, then local password
authentication is used.
If authentication fails due to denial of the RADIUS authentication, the authentication
process ends at that point, and local password authentication is not performed.
For information on the RADIUS server group used for the RADIUS server group
authentication, see 8.3.3 Configuring a RADIUS server group.
The usual setup for remote access must be completed in advance.
Command examples
1.
(config)# aaa authentication login default group LOGIN-SEC local
Sets the RADIUS server group name and local password authentication in that
order.
2.
(config)# aaa authentication login end-by-reject
Configures the settings so that the authentication process ends when denied by
RADIUS server group authentication and local authentication is not performed.
Notes
1.
94
Both
group radius
and
<Method>
because the both are RADIUS authentication methods, so you
cannot set them both as authentication methods. If you want to specify more
than one method, you can specify either of them and you can also specify
local
.
Both
group radius
and
<Method>
because the both are RADIUS authentication methods, so you
cannot set them both as authentication methods. If you want to specify more
group
<group-name>
group
<group-name>
are treated as the same
are treated as the same

Advertisement

Table of Contents
loading

This manual is also suitable for:

Ax1250s seriesAx1240s series

Table of Contents