Nortel Networks 4050 ユーザーズマニュアル

ページ / 922
Chapter 10 Configuring system settings 493
Nortel Secure Network Access Switch 4050 User Guide
 
Managing RADIUS authentication servers using the CLI
To configure the Nortel SNAS 4050 to use external RADIUS servers to 
authenticate system users, use the following command:
/cfg/sys/adm/auth/servers
The RADIUS Authentication Servers menu displays.
timeout <interval>
Sets the timeout interval for a connection request to a 
RADIUS server. At the end of the timeout period, if no 
connection has been established, authentication will 
fail.
interval
 is an integer that indicates the time 
interval in seconds (
s
), minutes (
m
), or hours (
h
). If 
you do not specify a measurement unit, seconds is 
assumed. The range is 1–10000 seconds. The 
default is 10 seconds.
fallback on|off
Specifies the desired fallback mode. Valid options are:
on
 — if the RADIUS servers are unreachable, the 
local passwords defined on the Nortel SNAS 4050 
are used as fallback
off
 — if the RADIUS servers are unreachable, the 
only way to access the system is to reinstall the 
software (boot install)
The default is 
on
.
Note: With the fallback mode set to 
on
, unwanted 
access to the Nortel SNAS 4050 is possible using a 
serial cable if the network cable is disconnected and 
the local password is known.
ena
Enables RADIUS authentication of system users.
The default is disabled.
dis
Disables RADIUS authentication of system users.
The default is disabled.
/cfg/sys/adm/auth
followed by: