RADIUS Authentication and Accounting

Configuring the Switch for RADIUS Authentication

For example, suppose you have already configured local passwords on the switch, but want to use RADIUS to protect primary Telnet and SSH access without allowing a secondary Telnet or SSH access option (which would be the switch’s local passwords):

The switch now allows Telnet and SSH authentication only through

Figure 3-2. Example Configuration for RADIUS Authentication

Note

In the above example, if you configure the Login Primary method as local

 

instead of radius (and local passwords are configured on the switch), then you

 

can gain access to either the Operator or Manager level without encountering

 

the RADIUS authentication specified for Enable Primary. Refer to “Local

 

Authentication Process” on page 3-14.

 

 

3-9