H3C S5600 Series Operation Manual page 567

Hide thumbs Also See for S5600 Series:
Table of Contents

Advertisement

If you change the RADIUS server type, the units of data flows sent to RADIUS servers will be
restored to the defaults.
When the third party RADIUS server is used, you can select standard or extended as the
server-type in a RADIUS scheme; when the CAMS server is used, you can select extended as the
server-type in a RADIUS scheme.
Configuring the Status of RADIUS Servers
For the primary and secondary servers (authentication/authorization servers, or accounting servers) in
a RADIUS scheme:
When the switch fails to communicate with the primary server due to some server trouble, the switch
will turn to the secondary server and exchange messages with the secondary server.
After the primary server remains in the block state for a set time (set by the timer quiet command), the
switch will try to communicate with the primary server again when it receives a RADIUS request. If it
finds that the primary server has recovered, the switch immediately restores the communication with
the primary server instead of communicating with the secondary server, and at the same time restores
the status of the primary server to active while keeping the status of the secondary server unchanged.
When both the primary and secondary servers are in active or block state, the switch sends messages
only to the primary server.
Follow these steps to set the status of RADIUS servers:
To do...
Enter system view
Create a RADIUS scheme and
enter its view
Set the status of the primary
RADIUS
authentication/authorization server
Set the status of the primary
RADIUS accounting server
Set the status of the secondary
RADIUS
authentication/authorization server
Set the status of the secondary
RADIUS accounting server
Configuring the Attributes of Data to be Sent to RADIUS Servers
Follow these steps to configure the attributes of data to be sent to RADIUS servers:
Use the command...
system-view
radius scheme
radius-scheme-name
state primary authentication
{ block | active }
state primary accounting { block
| active }
state secondary authentication
ip-address { block | active }
state secondary accounting
ip-address { block | active }
2-18
Remarks
Required
By default, a RADIUS scheme
named "system" has already been
created in the system.
Optional
By default, the RADIUS servers
specified with IP addresses in the
RADIUS scheme are all in the
active state.

Hide quick links:

Advertisement

Chapters

Table of Contents
loading

This manual is also suitable for:

S5600-26cS5600-26c-pwrS5600-26fS5600-50cS5600-50c-pwr

Table of Contents