HP 12500 Series Configuration Manual page 35

Routing
Table of Contents

Advertisement

Task
Specifying the RADIUS authentication/authorization servers
Specifying the RADIUS accounting servers and the relevant parameters
Specifying the shared keys for secure RADIUS communication
Specifying the VPN to which the servers belongs
Setting the username format and traffic statistics units
Setting the supported RADIUS server type
Setting the maximum number of RADIUS request transmission attempts
Setting the status of RADIUS servers
Specifying the source IP address for outgoing RADIUS packets
Setting timers for controlling communication with RADIUS servers
Configuring RADIUS accounting-on
Configuring the IP address of the security policy server
Configuring interpretation of RADIUS class attribute as CAR parameters
Enabling the trap function for RADIUS
Enabling the RADIUS client service
Displaying and maintaining RADIUS
Creating a RADIUS scheme
Before performing other RADIUS configurations, you must create a RADIUS scheme.
To create a RADIUS scheme and enter RADIUS scheme view:
Step
1.
Enter system view.
2.
Create a RADIUS scheme and
enter RADIUS scheme view.
NOTE:
A RADIUS scheme can be referenced by multiple ISP domains at the same time.
Specifying the RADIUS authentication/authorization servers
You can specify one primary authentication/authorization server and up to 16 secondary
authentication/authorization servers for a RADIUS scheme so that the NAS can find a server for user
authentication/authorization when using the scheme. When the primary server is not available, a
secondary server is used. In a scenario where redundancy is not required, specify only the primary
server.
In RADIUS, user authorization information is piggybacked in authentication responses sent to RADIUS
clients. It is neither allowed nor needed to specify a separate RADIUS authorization server.
Follow these guidelines when you specify RADIUS authentication/authorization servers:
Command
system-view
radius scheme
radius-scheme-name
25
Remarks
Required.
Optional.
Optional.
Optional.
Optional.
Optional.
Optional.
Optional.
Optional.
Optional.
Optional.
Optional.
Optional.
Optional.
Optional.
Optional.
Remarks
N/A
No RADIUS scheme is specified by
default.

Advertisement

Table of Contents
loading

Table of Contents