To do…

 

Use the command…

 

Remarks

 

 

Set the status of the primary

 

 

 

 

 

 

RADIUS

 

state primary authentication

 

Optional

 

 

authentication/authorization

 

{ block active }

 

 

 

server

 

 

 

By default, the primary RADIUS

 

 

Set the status of the primary

 

state primary accounting

 

servers in the default RADIUS

 

 

 

 

scheme "system" are in the

 

 

RADIUS accounting server

 

{ block active }

 

 

 

 

 

active state, the secondary

 

 

 

 

 

 

 

 

Set the status of the secondary

 

state secondary

 

servers in the scheme are in

 

 

RADIUS

 

 

the block state, and all

 

 

authentication/authorization

 

authentication { block

 

RADIUS servers in all other

 

 

server

 

active }

 

RADIUS schemes are in the

 

 

 

 

 

 

block state.

 

 

Set the status of the secondary

 

state secondary accounting

 

 

 

 

 

 

 

 

RADIUS accounting server

 

{ block active }

 

 

 

 

 

 

 

 

 

Configuring the Attributes of Data to be Sent to RADIUS Servers

Follow these steps to configure the attributes of data to be sent to RADIUS servers:

 

To do…

Use the command…

Remarks

 

Enter system view

system-view

 

 

 

 

 

 

 

Required

 

Create a RADIUS scheme and

radius scheme

By default, a RADIUS scheme

 

enter its view

radius-scheme-name

named "system" has already

 

 

 

been created in the system.

 

 

 

 

 

 

 

Optional

 

Set the format of the user

user-name-format

By default, the user names sent

 

names to be sent to RADIUS

{ with-domain

from the device to RADIUS

 

server

without-domain }

server carry ISP domain

 

 

 

names.

 

 

 

 

 

 

data-flow-format data { byte

Optional

 

 

By default, in a RADIUS

 

Set the units of data flows to

giga-byte kilo-byte

 

scheme, the data unit and

 

mega-byte } packet

 

RADIUS servers

packet unit for outgoing

 

{ giga-packet kilo-packet

 

 

RADIUS flows are byte and

 

 

mega- packet one-packet }

 

 

one-packet respectively.

 

 

 

 

 

 

 

 

Set the MAC address format of

calling-station-id mode

Optional

 

By default, the MAC address

 

the Calling-Station-Id (Type 31)

{ mode1 mode2 }

 

format is XXXX-XXXX-XXXX,

 

field in RADIUS packets

{ lowercase uppercase }

 

in lowercase.

 

 

 

 

 

 

 

 

 

RADIUS scheme view

Optional

 

Set the source IP address of

nas-ipip-address

By default, no source IP

 

 

address is set; and the IP

 

 

outgoing RADIUS messages

System view

address of the corresponding

 

 

radius nas-ip ip-address

outbound interface is used as

 

 

the source IP address.

 

 

 

 

 

 

 

2-15

Page 274
Image 274
3Com WX3000 State primary authentication, Block active, State primary accounting, State secondary, Authentication block