beautypg.com

Displaying radius configuration information – Brocade Multi-Service IronWare Security Configuration Guide (Supporting R05.6.00) User Manual

Page 84

background image

66

Multi-Service IronWare Security Configuration Guide

53-1003035-02

Configuring RADIUS security

1

Configuring an IPv6 interface as the source for all
RADIUS packets

Use the ipv6 radius source-interface command to specify the IPv6 address of the interface that is
chosen for the NAS-IPv6-Attribute. This feature is applicable only if an IPv6 interface is configured
and authentication happens through RADIUS.

Brocade(config)# int ve 1

Brocade(config-vif-1)# ipv6 address 2001:DB8::2004

Brocade(config-vif-1)# exit

Brocade(config)# ipv6 radius source-interface ve 1

Syntax: [no] ipv6 radius source-interface ethernet port-num | loopback num | ve num

The num parameter is a loopback interface or virtual interface number. If you specify an Ethernet
port, the portnum is the port’s number (including the slot number, if you are configuring a device).

The [no] option removes the configuration.

This command configures the designate interface port-num or num as the source for all RADIUS
packets from the Brocade device.

NOTE

The NAS-IPv6-ADDR attribute is added into the RADIUS Access-Request when ipv6 radius
source-interface command is configured or when the Access-Request is for IPv6 RADIUS server.

Displaying RADIUS configuration information

The show aaa command displays information about all TACACS or TACACS+ and RADIUS servers
identified on the device.

Example

***** TACACS server not configured

Radius default key: ...

Radius retries: 3

Radius timeout: 3 seconds

IPv4 Radius source-interface: loopback 1

IPv6 Radius source-interface: loopback 1

Radius Server: IP=10.25.105.201 Auth Port=1812 Acct Port=1813 Usage=any

Key=...

opens=0 closes=0 timeouts=0 errors=0

packets in=0 packets out=6

Health-check=disabled dead-time-interval=45

auto-authenticate-time-interval=30 available

IPv4 Radius Source address: IP=172.26.65.207 IPv6

Radius Source Address: IP=2001:DB8::18

no connection

Radius Server: IP=fe80::7ae7:d1ff:fe8d:1b82 Auth Port=1812 Acct Port=1813

Usage=any

Key=...

opens=0 closes=0 timeouts=0 errors=0

packets in=0 packets out=0

Health-check=disabled dead-time-interval=45

auto-authenticate-time-interval=30 available

IPv4 Radius Source address: IP=172.26.65.207 IPv6

Radius Source Address: IP=2001:DB8::18

no connection