Reference Guide

N8406-023 1Gb Intelligent L3 Switch Browser-based Interface Reference Guide 113
Switch RADIUS Configuration
To display the following form, select System > Radius.
The following table describes Switch Radius Configuration controls:
Table 88 Switch RADIUS Configuration controls
Control
Description
Primary Radius IP Address
Configures the primary Radius server address.
Secondary Radius IP Address
Configures the secondary Radius server address.
Radius port (1500-3000)
Configures the number of the UDP port to be configured, between 1500 -
3000. The default is 1645.
Radius timeout (1-10)
Configures the amount of time, in seconds, before a Radius server
authentication attempt is considered to have failed. The default is 3
seconds.
Radius retries (1-3)
Configures the number of failed authentication requests before switching
to a different Radius server. The default is 3 requests.
Enable/Disable Radius Server
Enables or disables the Radius server. The default is disabled.
Enable/Disable Radius Backdoor for telnet
Enables or disables the RADIUS backdoor for telnet. The default is
disabled. Telnet also applies to SSH/SCP/HTTP/HTTPS connections.
Enable/Disable Radius Secure Backdoor for
telnet
Enables or disables the RADIUS back door using secure password for
telnet/SSH/ HTTP/HTTPS. The default is disabled.
Radius Secret
Defines the shared secret (up to 32 characters) between the switch and
the RADIUS server(s).
Secondary Radius Server Secret
Defines the secondary shared secret (up to 32 characters) between the
switch and the Radius server(s).
IMPORTANT: If RADIUS is enabled, you must login using RADIUS authentication when connecting via the
console or Telnet/SSH/HTTP/HTTPS. Backdoor for console is always enabled, so you can connect using
noradius and the administrator password even if the backdoor (Backdoor for telnet) or secure backdoor
(Secure Backdoor for telnet) are disabled.
If Telnet backdoor is enabled, type in noradius as a backdoor to bypass RADIUS checking, and use the
administrator password to log into the switch. The switch allows this even if RADIUS servers are available.
If secure backdoor is enabled, type in noradius as a backdoor to bypass RADIUS checking, and use the
administrator password to log into the switch. The switch allows this only if RADIUS servers are not available.