Displaying radius configuration information – Brocade TurboIron 24X Series Configuration Guide User Manual
Page 148

114
Brocade TurboIron 24X Series Configuration Guide
53-1003053-01
Configuring RADIUS security
Configuring an interface as the source for all 
RADIUS packets
You can designate the lowest-numbered IP address configured an Ethernet port, loopback 
interface, or virtual interface as the source IP address for all RADIUS packets from the Layer 3 
Switch. Identifying a single source IP address for RADIUS packets provides the following benefits:
•
If your RADIUS server is configured to accept packets only from specific links or IP addresses, 
you can use this feature to simplify configuration of the RADIUS server by configuring the 
device to always send the RADIUS packets from the same link or source address. 
•
If you specify a loopback interface as the single source for RADIUS packets, RADIUS servers 
can receive the packets regardless of the states of individual links. Thus, if a link to the RADIUS 
server becomes unavailable but the client or server can be reached through another link, the 
client or server still receives the packets, and the packets still have the source IP address of 
the loopback interface.
The software contains separate CLI commands for specifying the source interface for Telnet, 
TACACS/TACACS+, and RADIUS packets. You can configure a source interface for one or more of 
these types of packets.
To specify an Ethernet, loopback or virtual interface as the source for all RADIUS packets from the 
device, use the following CLI method. The software uses the lowest-numbered IP address 
configured on the port or interface as the source IP address for RADIUS packets originated by the 
device.
To specify the lowest-numbered IP address configured on a virtual interface as the device source 
for all RADIUS packets, enter commands such as the following.
TurboIron(config)#int ve 1
TurboIron(config-vif-1)#ip address 10.0.0.3/24
TurboIron(config-vif-1)#exit
TurboIron(config)#ip radius source-interface ve 1
The commands in this example configure virtual interface 1, assign IP address 10.0.0.3/24 to the 
interface, then designate the interface as the source for all RADIUS packets from the Layer 3 
Switch. 
Syntax: ip radius source-interface ethernet 
The 
The 
Ethernet port, the 
Displaying RADIUS configuration information
The show aaa command displays information about all TACACS/TACACS+ and RADIUS servers 
identified on the device. 
