3Com Switch 8800 Family IPsec Module Configuration and Command reference Guide
Configuring the RADIUS Protocol 45
information of online users to the RADIUS accounting server at intervals of this
value.
Perform the following configuration in RADIUS view.
In the command, minutes represents the interval for realtime accounting and it
must be a multiple of three.
The setting of real-time accounting interval somewhat depends on the
performance of the NAS and the RADIUS server: a shorter interval requires higher
device performance. You are therefore recommended to adopt a longer interval
when there are a large number of users (more than 1000, inclusive). The following
table recommends the ratio of minutes to the number of users.
The realtime accounting interval defaults to 12 minutes.
Configure the RADIUS
Server to Send a trap
Packet
Perform the following configuration in system view.
By default, the RADIUS server does not send a trap packet when it goes down.
Configuring Local
RADIUS Authentication
Server
The security gateway provides the simple local RADIUS server function, including
authentication and authorization, called RADIUS authentication server function.
Tab le 38 Set a real-time accounting interval
Operation Command
Set a real-time accounting interval. timer realtime-accounting minutes
Restore the default real-time accounting
interval.
undo timer realtime-accounting
Tab le 39 Recommended ratio of interval to user number
User number Interval for realtime accounting (minute)
1 - 99 3
100 - 499 6
500 - 999 12
¦1000 ¦15
Tab le 40 Configure the RADIUS server to send a trap packet
Operation Command
Configure the RADIUS server to send a trap
packet when it goes down.
radius trap { authentication-server-down |
accounting-server-down }
Configure the RADIUS server not to send a
trap packet when it goes down.
undo radius trap {
authentication-server-down |
accounting-server-down }
Tab le 41 Configure local RADIUS authentication server
Operation Command
Configure local RADIUS authentication server. local-server nas-ip ip-address key password
Cancel the local RADIUS authentication server
configuration.
undo local-server nas-ip ip-address