3com 4210 PWR 9-Port 3CR17341-91-ME User Manual
Product codes
3CR17341-91-ME
AAA Configuration Examples
263
AAA Configuration
Examples
Examples
Remote RADIUS
Authentication of
Telnet/SSH Users
n
The configuration procedure for remote authentication of SSH users by RADIUS
server is similar to that for Telnet users. The following text only takes Telnet users
as example to describe the configuration procedure for remote authentication.
server is similar to that for Telnet users. The following text only takes Telnet users
as example to describe the configuration procedure for remote authentication.
Network requirements
In the network environment shown in Figure 81, you are required to configure the
switch so that the Telnet users logging into the switch are authenticated by the
RADIUS server.
switch so that the Telnet users logging into the switch are authenticated by the
RADIUS server.
■
A RADIUS authentication server with IP address 10.110.91.164 is connected to
the switch.
the switch.
■
On the switch, set the shared key it uses to exchange messages with the
authentication RADIUS server to "aabbcc".
authentication RADIUS server to "aabbcc".
■
A CAMS server is used as the RADIUS server. You can select extended as the
server-type in a RADIUS scheme.
server-type in a RADIUS scheme.
Table 203 Display and maintain RADIUS protocol information
Operation
Command
Remarks
Display RADIUS message
statistics about local RADIUS
authentication server
statistics about local RADIUS
authentication server
display local-server
statistics
statistics
You can execute the display
command in any view.
command in any view.
Display configuration
information about one
specific or all RADIUS schemes
information about one
specific or all RADIUS schemes
display radius scheme [
radius-scheme-name ]
radius-scheme-name ]
Display RADIUS message
statistics
statistics
display radius statistics
Display buffered
non-response
stop-accounting requests
non-response
stop-accounting requests
display
stop-accounting-buffer {
radius-scheme
radius-scheme-name |
session-id session-id |
time-range start-time
stop-time | user-name
user-name }
stop-accounting-buffer {
radius-scheme
radius-scheme-name |
session-id session-id |
time-range start-time
stop-time | user-name
user-name }
Delete buffered non-response
stop-accounting requests
stop-accounting requests
reset
stop-accounting-buffer {
radius-scheme
radius-scheme-name |
session-id session-id |
time-range start-time
stop-time | user-name
user-name }
stop-accounting-buffer {
radius-scheme
radius-scheme-name |
session-id session-id |
time-range start-time
stop-time | user-name
user-name }
You can execute the reset
command in user view.
command in user view.
Clear RADIUS message
statistics
statistics
reset radius statistics