Cisco MDS 9000 Series Configuration Manual page 79

Security
Hide thumbs Also See for MDS 9000 Series:
Table of Contents

Advertisement

Configuring Security Features on an External AAA Server
Note
The default idle timer value is 0 minutes. When the idle time interval is 0 minutes, periodic RADIUS server
monitoring is not performed.
To configure the test idle timer, see
Configuring Test User Name
You can configure a username and password for periodic RADIUS server status testing. You do not need to
configure the test username and password to issue test messages to monitor RADIUS servers. You can use
the default test username (test) and default password (test).
Note
We recommend that the test username not be the same as an existing username in the RADIUS database for
security reasons.
To configure the optional username and password for periodic RADIUS server status testing, see
RADIUS Server Monitoring Parameters, on page
About Validating a RADIUS Server
As of Cisco SAN-OS Release 3.0(1), you can periodically validate a RADIUS server. The switch sends a test
authentication to the server using the username and password that you configure. If the server does not respond
to the test authentication, then the server is considered non responding.
Note
For security reasons we recommend that you do not use a username that is configured on your RADIUS server
as a test username.
You can configure this option to test the server periodically, or you can run a one-time only test.
Sending RADIUS Test Messages for Monitoring
You can manually send test messages to monitor a RADIUS server.
To send the test message to the RADIUS server, follow this step:
Procedure
Step 1
switch# test aaa server radius 10.10.1.1 test test
Sends a test message to a RADIUS server using the default username (test) and password (test).
Step 2
switch# test aaa server radius 10.10.1.1 testuser Ur2Gd2BH
Sends a test message to a RADIUS server using a configured test username (testuser) and password
(Ur2Gd2BH).
Configuring RADIUS Server Monitoring Parameters, on page
54.
Cisco MDS 9000 Series Security Configuration Guide, Release 8.x
Configuring Test User Name
54.
Configuring
61

Advertisement

Table of Contents
loading

Table of Contents