Configuring A Local Radius Authentication Server - Huawei Quidway S3900 Series Operation Manual

Hide thumbs Also See for Quidway S3900 Series:
Table of Contents

Advertisement

Operation Manual – AAA & RADIUS & HWTACACS & EAD
Quidway S3900 Series Ethernet Switches-Release 1510
Caution:
Generally, the access users are named in the userid@isp-name format. Where,
isp-name behind the @ character represents the ISP domain name, by which the
device determines which ISP domain it should ascribe the user to. However, some
old RADIUS servers cannot accept the user names that carry ISP domain names. In
this case, it is necessary to remove the domain names carried in the user names
before sending the user names to the RADIUS server. For this reason, the
user-name-format command is designed for you to specify whether or not ISP
domain names are carried in the user names sent to the RADIUS server.
For a RADIUS scheme, if you have specified that no ISP domain names are carried
in the user names, you should not adopt this RADIUS scheme in more than one ISP
domain. Otherwise, such errors may occur: the RADIUS server regards two
different users having the same name but belonging to different ISP domains as the
same user (because the usernames sent to it are the same).
In the default RADIUS scheme "system", no ISP domain names are carried in the
user names by default.

1.4.9 Configuring a Local RADIUS Authentication Server

Table 1-20 Configure local RADIUS authentication server
Operation
Enter system view
Enable UDP port for
local
authentication
server
Create
RADIUS
authentication
server
Command
system-view
RADIUS
local-server enable
a
local
local-server
ip-address key password
Huawei Technologies Proprietary
Chapter 1 AAA & RADIUS & HWTACACS
Optional
By default, UDP port for local
RADIUS
server is enabled.
Required
By default, a local RADIUS
nas-ip
authentication
already been created, whose
NAS-IP and key are 127.0.0.1
and huawei respectively.
1-31
Configuration
Description
authentication
server
has

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents