Table 57 SSHD Configuration commands

Command

Description

no ssh scp-enable

Disables the SCP apply and save. This is the default for SCP.

 

Command mode: Global configuration

ssh enable

Enables the SSH server.

 

Command mode: Global configuration

no ssh enable

Disables the SSH server. This is the default for the SSH server.

 

Command mode: Global configuration

show ssh

Displays the current SSH server configuration.

 

Command mode: All

RADIUS server configuration

NOTE: See the N8406-022 1Gb Intelligent L2 Switch Application Guide for information on RADIUS.

The following table describes the RADIUS Server Configuration commands.

Table 58 RADIUS Server Configuration commands

Command

Description

[no] radius-server primary-host

Sets the primary RADIUS server address and shared secret between

<IP address> key <1-32

the switch and the RADIUS server(s).

characters>

Command mode: Global configuration

[no] radius-server secondary-

Sets the secondary RADIUS server address and shared secret

host <IP address> key <1-32

between the switch and the RADIUS server(s).

characters>

Command mode: Global configuration

radius-server port <UDP port

Enter the number of the User Datagram Protocol (UDP) port to be

number>

configured, between 1500-3000. The default is 1645.

 

Command mode: Global configuration

radius-server retransmit <1-3>

Sets the number of failed authentication requests before switching to a

 

different RADIUS server. The range is 1-3 requests. The default is 3

 

requests.

 

Command mode: Global configuration

radius-server timeout <1-10>

Sets the amount of time, in seconds, before a RADIUS server

 

authentication attempt is considered to have failed. The range is 1-10

 

seconds. The default is 3 seconds.

 

Command mode: Global configuration

[no] radius-server telnet- backdoor

Enables or disables the RADIUS back door for telnet/SSH/ HTTP/HTTPS. This command does not apply when secure backdoor is enabled.

Command mode: Global configuration

[no] radius-server secure- backdoor

Enables or disables the RADIUS back door using secure password for telnet/SSH/ HTTP/HTTPS. This command does not apply when backdoor (telnet) is enabled.

Command mode: Global configuration

radius-server enable

Enables the RADIUS server.

 

 

Command mode: Global configuration

no radius-server enable

Disables the RADIUS server. This is the default.

 

 

Command mode: Global configuration

show radius-server

Displays the current RADIUS server parameters.

 

 

Command mode: All

 

 

 

IMPORTANT:

If RADIUS is enabled, you must login using RADIUS authentication when connecting via the

console or Telnet/SSH/HTTP/HTTPS. Backdoor for console is always enabled, so you can connect using noradius and the administrator password even if the backdoor (telnet) or secure backdoor (secbd) are disabled.

If Telnet backdoor is enabled (telnet ena), type in noradius as a backdoor to bypass RADIUS checking, and use the administrator password to log into the switch. The switch allows this even if RADIUS servers are available.

If secure backdoor is enabled (secbd ena), type in noradius as a backdoor to bypass RADIUS checking, and use the administrator password to log into the switch. The switch allows this only if RADIUS servers are not available.

Configuration Commands 61

Page 61
Image 61
NEC N8406-022 manual Radius server configuration

N8406-022 specifications

The NEC N8406-022 is a robust and versatile networking device designed primarily for organizations requiring high-performance connectivity solutions. As part of NEC's extensive portfolio of networking equipment, the N8406-022 is engineered to address the demands of modern enterprise environments, ensuring seamless communication and data processing capabilities.

One of the key features of the N8406-022 is its multi-layer switching functionality. This device supports Layer 2 and Layer 3 switching, allowing for efficient data routing and reducing latency within local area networks (LANs). This capability is particularly beneficial for businesses that rely on real-time data access and transfer, such as those in financial services, media, and telecommunications.

The N8406-022 is equipped with advanced Quality of Service (QoS) features that help prioritize critical network traffic. This means that voice and video data packets can be given precedence over less time-sensitive information, ensuring that essential communication remains clear and uninterrupted. This is crucial for organizations leveraging VoIP and video conferencing solutions.

In terms of connectivity, the NEC N8406-022 offers a variety of ports, including multiple Gigabit Ethernet ports, which facilitate high-speed data transfer and enable seamless integration into existing network infrastructures. The device may also include 10 Gigabit SFP+ ports, providing the flexibility for high-capacity uplinks to support bandwidth-intensive applications and storage solutions.

Security is another focal point of the NEC N8406-022, with integrated features such as VLAN support, access control lists (ACLs), and port security measures. These capabilities protect sensitive data from unauthorized access and ensure that only legitimate users and devices can connect to the network.

Moreover, the N8406-022 often incorporates advanced energy-efficient technologies that minimize power consumption without compromising performance. This not only contributes to operational cost savings but also supports organizations in their sustainability efforts.

With its combination of performance, security, and energy efficiency, the NEC N8406-022 stands out as a reliable networking solution suitable for a wide range of enterprises looking to enhance their connectivity and operational efficiency. Whether deployed in data centers or as part of a corporate network, this device is built to meet the evolving demands of today’s digital landscape.