H3C S7500 Series Ethernet Switches Operation Manual
Operation Manual – AAA & RADIUS & HWTACACS & EAD
H3C S7500 Series Ethernet Switches
Chapter 1 AAA & RADIUS & HWTACACS
Configuration
1-28
To do... Use the command... Remarks
Set the status of the
primary RADIUS
authentication/authorizati
on server
state primary
authentication { block |
active }
Set the status of the
primary RADIUS
accounting server
state primary
accounting { block |
active }
Set the status of the
secondary RADIUS
authentication/authorizati
on server
state secondary
authentication { block |
active }
Set the status of the
secondary RADIUS
accounting server
state secondary
accounting { block |
active }
Optional
By default, all the RADIUS
servers in a customized
RADIUS scheme are in
the block state, and all
the RADIUS servers
configured with IP
addresses are in the
active state.
1.4.8 Configuring the Attributes for Data to be Sent to RADIUS Servers
Table 1-19 Configure the attributes for data to be sent to the RADIUS servers
To do... Use the command... Remarks
Enter system view
system-view
—
Create a RADIUS scheme
and enter its view
radius scheme
radius-scheme-name
Required
By default, a RADIUS
scheme named system
has already been created
in the system.
Set the format of the user
names to be sent to
RADIUS servers
user-name-format
{ with-domain |
without-domain }
Optional
By default, the user
names sent from the
switch to RADIUS servers
carry ISP domain names.
Set the units of measure
for data flows sent to
RADIUS servers
data-flow-format data
{ byte | giga-byte |
kilo-byte | mega-byte }
packet { giga-packet |
kilo-packet | mega-
packet | one-packet }
Optional
By default, in a RADIUS
scheme, the unit of
measure for data is byte
and that for packets is
one-packet.
RADIUS scheme view
nas-ip ip-address
Set the source IP address
used by the switch to send
RADIUS packets
System view
radius nas-ip ip-address
Optional
By default, no source IP
address is specified; and
the IP address of the
outbound interface is
used as the source IP
address.