Reference Guide

N8406-022A 1Gb Intelligent L2 Switch Browser-based Interface Reference Guide 77
Switch RADIUS Configuration
To display the following form, select System > Radius.
The following table describes Switch Radius Configuration controls:
Table 62 Switch RADIUS Configuration controls
Control
Description
Primary Radius IP Address
Configures the primary Radius server address.
Secondary Radius IP Address
Configures the secondary Radius server address.
Radius port (1500-3000)
Configures the number of the UDP port to be configured, between 1500 -
3000. The default is 1645.
Radius timeout (1-10)
Configures the amount of time, in seconds, before a Radius server
authentication attempt is considered to have failed. The default is 3
seconds.
Radius retries (1-3)
Configures the number of failed authentication requests before switching
to a different Radius server. The default is 3 requests.
Enable/Disable Radius Server
Enables or disables the Radius server.
Enable/Disable Radius Backdoor for telnet
Enables or disables the RADIUS backdoor for telnet. Telnet also applies
to SSH/SCP/HTTP/HTTPS connections.
Enable/Disable Radius Secure Backdoor for
telnet
Enables or disables the RADIUS back door using secure password for
telnet/SSH/ HTTP/HTTPS.
Radius Secret
Defines the shared secret (up to 32 characters) between the switch and
the RADIUS server(s).
Secondary Radius Server Secret
Defines the secondary shared secret (up to 32 characters) between the
switch and the Radius server(s).
IMPORTANT: If RADIUS is enabled, you must login using RADIUS authentication when connecting via the
console or Telnet/SSH/HTTP/HTTPS. Backdoor for console is always enabled, so you can connect using
noradius and the administrator password even if the backdoor (telnet) or secure backdoor (secbd) are
disabled.
If Telnet backdoor is enabled (telnet ena), type in noradius as a backdoor to bypass RADIUS checking,
and use the administrator password to log into the switch. The switch allows this even if RADIUS servers are
available.
If secure backdoor is enabled (secbd ena), type in noradius as a backdoor to bypass RADIUS checking,
and use the administrator password to log into the switch. The switch allows this only if RADIUS servers are
not available.