Chapter 10 Configuring system settings 493

 

 

 

 

 

 

 

/cfg/sys/adm/auth

 

 

followed by:

 

 

 

 

 

timeout <interval>

Sets the timeout interval for a connection request to a

 

 

RADIUS server. At the end of the timeout period, if no

 

 

connection has been established, authentication will

 

 

fail.

 

 

interval is an integer that indicates the time

 

 

interval in seconds (s), minutes (m), or hours (h). If

 

 

you do not specify a measurement unit, seconds is

 

 

assumed. The range is 1–10000 seconds. The

 

 

default is 10 seconds.

 

 

 

 

fallback onoff

Specifies the desired fallback mode. Valid options are:

 

 

on — if the RADIUS servers are unreachable, the

 

 

local passwords defined on the Nortel SNAS 4050

 

 

are used as fallback

 

 

off — if the RADIUS servers are unreachable, the

 

 

only way to access the system is to reinstall the

 

 

software (boot install)

 

 

The default is on.

 

 

Note: With the fallback mode set to on, unwanted

 

 

access to the Nortel SNAS 4050 is possible using a

 

 

serial cable if the network cable is disconnected and

 

 

the local password is known.

 

 

 

 

ena

Enables RADIUS authentication of system users.

 

 

The default is disabled.

 

 

 

 

dis

Disables RADIUS authentication of system users.

 

 

The default is disabled.

 

 

 

Managing RADIUS authentication servers using the CLI

To configure the Nortel SNAS 4050 to use external RADIUS servers to authenticate system users, use the following command:

/cfg/sys/adm/auth/servers

The RADIUS Authentication Servers menu displays.

Nortel Secure Network Access Switch 4050 User Guide

Page 493
Image 493
Nortel Networks 4050 manual Radius Authentication Servers menu displays, Fallback onoff, Cfg/sys/adm/auth/servers