Brocade Communications Systems 6910 manual Authorization and accounting, Radius general group

Models: 6910

1 80
Download 80 pages 30.19 Kb
Page 44
Image 44

Authorization and accounting

Authorization and accounting

The following objects are for authorization, and accounting functions.

Name, Identifier, and Syntax

Access

Description

 

 

 

snAuthorizationExec

Read-write

Shows the authorization method for exec programs. This object

brcdIp.1.1.3.15.2.3

 

can have zero to one octet. The octet represents a method for

Syntax: OctetString

 

Telnet or SSH login authorization. The octet can have one of the

 

 

following values:

 

 

tacplus(5) – Send EXEC authorization request to TACACS+

 

 

server

 

 

none(6) – No EXEC authorization method

 

 

Setting a zero length octet string invalidates all authorization

 

 

methods.

 

 

 

snAccountingExec

Read-write

Shows the accounting method for exec programs. This object

brcdIp.1.1.3.15.3.3

 

can have zero to one octet. The octet represents a method for

Syntax: OctetString

 

Telnet or SSH login accounting. The octet can have one of the

 

 

following values:

 

 

radius(2) – Send accounting information to the RADIUS

 

 

server

 

 

tacplus(5) – Send accounting information to the TACACS+

 

 

server

 

 

none(6) – No accounting method

Setting a zero length octet string invalidates all accounting methods.

RADIUS general group

You can use a Remote Authentication Dial In User Service (RADIUS) server to secure the following types of access to the switch or router:

Telnet access

SSH access

Web management access

Access to the Privileged EXEC level and CONFIG levels of the CLI

The following objects provide information on RADIUS authentication.

Name, Identifier, and Syntax

Access

Description

 

 

 

snRadiusGeneral

 

 

brcdIp.1.1.3.12.1

 

 

 

 

 

snRadiusRetransmit

Read-write

Indicates the number of authentication query retransmissions

brcdIp.1.1.3.12.1.3

 

that can be sent to the RADIUS server.

Syntax: Integer

 

Valid values: 1 – 30

 

 

Default: 2

 

 

 

snRadiusTimeOut

Read-write

Specifies the number of seconds to wait for authentication reply

brcdIp.1.1.3.12.1.4

 

from the RADIUS server.

Syntax: Integer

 

Valid values: 1 – 65535

 

 

Default: 5

32

Brocade 6910 Ethernet Access Switch MIB Reference

 

53-1002582-01

Page 44
Image 44
Brocade Communications Systems 6910 manual Authorization and accounting, Radius general group