H3C S3100 Series Operation Manual page 390

H3c s3100 series ethernet switches operation manual
Hide thumbs Also See for S3100 Series:
Table of Contents

Advertisement

# Create a RADIUS scheme named "radius1" and enter RADIUS scheme view.
[Sysname] radius scheme radius1
# Assign IP addresses to the primary authentication and accounting RADIUS servers.
[Sysname-radius-radius1] primary authentication 10.11.1.1
[Sysname-radius-radius1] primary accounting 10.11.1.2
# Assign IP addresses to the secondary authentication and accounting RADIUS server.
[Sysname-radius-radius1] secondary authentication 10.11.1.2
[Sysname-radius-radius1] secondary accounting 10.11.1.1
# Set the password for the switch and the authentication RADIUS servers to exchange messages.
[Sysname-radius-radius1] key authentication name
# Set the password for the switch and the accounting RADIUS servers to exchange messages.
[Sysname-radius-radius1] key accounting money
# Set the interval and the number of the retries for the switch to send packets to the RADIUS servers.
[Sysname-radius-radius1] timer 5
[Sysname-radius-radius1] retry 5
# Set the timer for the switch to send real-time accounting packets to the RADIUS servers.
[Sysname-radius-radius1] timer realtime-accounting 15
# Configure to send the user name to the RADIUS server with the domain name truncated.
[Sysname-radius-radius1] user-name-format without-domain
[Sysname-radius-radius1] quit
# Create the domain named "aabbcc.net" and enter its view.
[Sysname] domain enable aabbcc.net
# Specify to adopt radius1 as the RADIUS scheme of the user domain. If RADIUS server is invalid,
specify to adopt the local authentication scheme.
[Sysname-isp-aabbcc.net] scheme radius-scheme radius1 local
# Specify the maximum number of users the user domain can accommodate to 30.
[Sysname-isp-aabbcc.net] access-limit enable 30
# Enable the idle disconnecting function and set the related parameters.
[Sysname-isp-aabbcc.net] idle-cut enable 20 2000
[Sysname-isp-aabbcc.net] quit
# Set the default user domain to be "aabbcc.net".
[Sysname] domain default enable aabbcc.net
# Create a local access user account.
[Sysname] local-user localuser
[Sysname-luser-localuser] service-type lan-access
[Sysname-luser-localuser] password simple localpass
1-25

Advertisement

Chapters

Table of Contents
loading

Table of Contents