Configuring the RADIUS Protocol 221
the RADIUS server group, and specify it to use RADIUS AAA schemes. For more
about the configuration commands, refer to “Configuring AAA ”.
Tasks for configuring RADIUS are described in the following sections:
Creating/Deleting a RADIUS Server Group
Setting the IP Address and Port Number of RADIUS Server
Setting the RADIUS Packet Encryption Key
Setting the Response Timeout Timer of RADIUS Server
Setting Retransmission Times of the RADIUS Request Packet
Enabling the Selection of the RADIUS Accounting Option
Setting a Real-time Accounting Interval
Setting Maximum Times of Real-time Accounting Request
Enabling/Disabling Stop Accounting Request Buffer
Setting the Maximum Retransmitting Times of the Stop Accounting Request
Setting the Supported Type of RADIUS Server
Setting RADIUS Server State
Setting Username Format Transmitted to RADIUS Server
Setting the Unit of Data Flow that Transmitted to RADIUS Server
Configuring a Local RADIUS Server Group
Configuring Source Address for RADIUS Packets Sent by NAS
Displaying and Debugging the AAA, RADIUS, and HWTACACS Protocols
Configuring FTP/Telnet User Authentication at Remote RADIUS Server
Configuring FTP/Telnet User Authentication at the Local RADIUS Server
Among these tasks, creating RADIUS server group, and setting IP address of the
RADIUS server are required, while other takes are optional and can be performed
per your requirements.
Creating/Deleting a RADIUS Server Group
As mentioned above, RADIUS protocol configurations are performed on the per
RADIUS server group basis. Therefore, before performing other RADIUS protocol
configurations, it is compulsory to create the RADIUS server group and enter its
view to set its IP address.
You can use the following commands to create/delete a RADIUS server group.
Perform the following configurations in system view.
Tabl e 235 Create/Delete a RADIUS Server Group
Operation Command
Create a RADIUS server group and enter its
view
radius scheme radius-server-name
Delete a RADIUS server group undo radius scheme
radius-server-name