Chapter 6 Configuring authentication 249

Configuring session timeout using the CLI

You can configure the Nortel SNAS 4050 to enable session timeout and to retrieve a session timeout value from the RADIUS server. With session timeout enabled, the session timeout value controls the length of the client’s Nortel SNA network session. When the time is up, the client is automatically logged out. Idle time has no effect on the session timeout.

To configure the Nortel SNAS 4050 for session timeout, use the following command:

/cfg/domain 1/aaa/auth #/radius/sessiontim

The Session Timeout menu displays.

The Session Timeout menu includes the following options:

/cfg/domain 1/aaa/auth #/radius/sessiontim

followed by:

vendorid <vendor ID>

Specifies the vendor-specific attribute used by the

 

RADIUS server to send a session timeout value to the

 

Nortel SNAS 4050. The default Vendor-Id is 0.

 

With the Vendor-Type also set to 0 (the default value),

 

the RADIUS server sends the standard attribute for

 

session timeout.

 

 

vendortype <vendor

Specifies the Vendor-Type value used in combination

type>

with the Vendor-Id to identify the session timeout value

 

to send to the Nortel SNAS 4050. The default is 0.

 

 

ena

Enables retrieval of the RADIUS server session timeout

 

value. The default is disabled.

 

 

dis

Disables retrieval of the RADIUS server session

 

timeout value. The default is disabled.

 

 

Configuring LDAP authentication using the CLI

To configure the Nortel SNAS 4050 domain to use an external LDAP server for authentication, use the following command:

/cfg/domain 1/aaa/auth <auth ID>

Nortel Secure Network Access Switch 4050 User Guide

Page 249
Image 249
Nortel Networks 4050 manual Configuring Ldap authentication using the CLI, Configuring session timeout using the CLI