Administrator Guide

Table Of Contents
Parameters
pap Enter the keyword pap to use the Password Authentication Protocol (PAP) for
RADIUS authentication. This protocol uses the username and password attributes
in the access-request message sent to the RADIUS server.
mschapv2 Enter the keyword mschapv2 to use the Microsoft Challenge-Handshake
Authentication Protocol (MS-CHAPv2) for RADIUS authentication. This protocol
is considered to be more secure than PAP and uses mutual authentication based on
a random challenge and challenge response.
Defaults PAP
Command Modes CONFIGURATION
Command
History
This guide is platform-specific. For command information about other platforms, see the relevant Dell
EMC Networking OS Command Line Reference Guide.
Version Description
9.11(2.0P1) Introduced the command on all Dell EMC Networking OS platforms.
Usage
Information
If an authentication method is not configured using this command, then PAP is used for authentication
with the RADIUS server.
You can configure the RADIUS authentication method to access the switch using the following
applications: Console, Telnet, SSH, REST, and OMI.
client
Configures trusted DAC clients.
Syntax
client {ipv4-addr | ipv6-addr | hostname} [vrf vrf-name] [key [encryption-
type] key]
To undo the DAC client configuration, enter the no client host command.
Defaults If VRF is not configured, default VRF is considered.
Parameters
ipv4addr Enter the keyword ipv4addr to specify the IPv4 address of the DAC.
ipv6addr Enter the keyword ipv6addr to specify the IPv6 address of the DAC.
hostname Enter the keyword hostname to enter the name of the host.
vrf
vrf-name
Enter the keyword vrf followed by the name of the VRF to associate a VRF with
the client.
key (Optional) Enter the keyword key to specify an encryption key.
encryption-type (Optional) Enter either 0 or 7 as the encryption type for the specified key. The
options are:
0 implies that the key is not encrypted and is stored as clear text.
7 implies that the key is encrypted and hidden.
key
Enter a string that is the key to be exchanged between the switch and the dynamic
authorization client. The key can be up to 42 characters long.
Command Modes
CONF-DYNAMIC-AUTH
Usage
Information
It is possible to configure more than one dynamic authorization clients Duplicate (ipv4-addr or ipv6-
addr or host-name) configurations are not allowed.
Command
History
This guide is platform-specific. For command information about other platforms, see the relevant Dell
EMC Networking OS Command Line Reference Guide.
The following is a list of the Dell EMC Networking OS version history for this command.
Security 1367