Quick Steps For Configuring Authentication Servers Managing Authentication Servers
page 20-4 OmniSwitch 6600 Family Network Configuration Guide April 2006
Quick Steps For Configuring Authentication Servers
1For RADIUS or LDAP servers, configure user attribute information on the servers. See “RADIUS
Servers” on page 20-9 and “LDAP Servers” on page 20-15.
2Use the aaa radius-server and/or the aaa ldap-server command to configure the authentication
server(s). For example:
-> aaa radius-server rad1 host 10.10.2.1 10.10.3.5 key amadeus
-> aaa ldap-server ldap2 host 10.10.3.4 dn cn=manager password tpub base c=us
Note. (Optional) Verify the server configuration by entering the show aaa server command. For example:
-> show aaa server
Server name = rad1
Server type = RADIUS,
IP Address 1 = 10.10.2.1,
IP Address 2 = 10.10.3.5
Retry number = 3,
Timeout (in sec) = 2,
Authentication port = 1645,
Accounting port = 1646
Server name = ldap2
Server type = LDAP,
IP Address 1 = 10.10.3.4,
Port = 389,
Domain name = cn=manager,
Search base = c=us,
Retry number = 3,
Timeout (in sec) = 2,
See the CLI Reference Guide for information about the fields in this display.
3If you are using ACE/Server, there is no required switch configuration; however, you must FTP the
sdconf.rec file from the server to the switch’s /network directory.
4Configure authentication on the switch. This step is described in other chapters. For a quick overview
of using the configured authentication servers with Authenticated VLANs, see “AVLAN Configuration
Overview” on page 21-4. For a quick overview of using the configured authentication servers with
Authenticated Switch Access, see the OmniSwitch 6600 Family Switch Management Guide.