R3166-R3206-HP High-End Firewalls Access Control Configuration Guide-6PW101

147
Displaying and maintaining RADIUS
To do… Use
the command…
Remarks
Display the configuration information
of RADIUS schemes
display radius scheme
[ radius-scheme-name ]
Available in any view
Display the RADIUS packet statistics display radius statistics Available in any view
Display information about buffered
stop-accounting requests for which no
responses have been received
display stop-accounting-buffer
{ radius-scheme radius-scheme-name |
session-id session-id | time-range
start-time stop-time | user-name
user-name }
Available in any view
Clear RADIUS statistics reset radius statistics Available in user view
Clear the buffered stop-accounting
requests for which no responses have
been received
reset stop-accounting-buffer
{ radius-scheme radius-scheme-name |
session-id session-id | time-range
start-time stop-time | user-name
user-name }
Available in user view
Configuring HWTACACS schemes in the web interface
NOTE:
You cannot remove the HWTACACS schemes in use or change the IP addresses of the HWTACACS
servers in use.
The HWTACACS scheme configured in the web interface is named system.
HWTACACS configuration task list
Task Remarks
Creating an HWTACACS scheme
Required
Create an HWTACACS scheme named system.
By default, no HWTACACS scheme exists.
Configuring HWTACACS servers
Authentication server and authorization server are
mandatory and accounting server is optional.
This section describes how to specify the primary and the
secondary TACACS
authentication/authorization/accounting servers.
By default, no server is specified.
Configuring HWTACACS parameters
Optional
This section describes how to configure the parameters that
are necessary for information exchange between the
firewall and TACACS server.
Creating an HWTACACS scheme
If the HWTACACS scheme named system does not exist, select User > HWTACACS > Server
Configuration or User > HWTACACS > Parameter Configuration from the navigation tree. The page