beautypg.com

Radius troubleshooting – Brocade Mobility RFS7000-GR Controller System Reference Guide (Supporting software release 4.1.0.0-040GR and later) User Manual

Page 529

background image

Brocade Mobility RFS7000-GR Controller System Reference Guide

515

53-1001944-01

Security issues

B

To access the Brocade Mobility RFS7000-GR Controller using password recovery:

CAUTION
Using this recovery procedure erases the switch’s current configuration and data files from the
switch /flash dir. Only the switch’s license keys are retained. You should be able to log in using
the default username and password (admin/admin123) and restore the switch’s previous
configuration (only if it has been exported to a secure location before the password recovery
procedure was invoked).

1. Connect a terminal (or PC running terminal emulation software) to the serial port on the front

of the switch.

The switch login screen displays. Use the following CLI command for normal login process:

RFSwitch login: cli

2. Enter a password recovery username of restore and password recovery password of

restoreDefaultPassword.

User Access Verification

Username: restore

Password: restoreDefaultPassword

WARNING: This will wipe out the configuration (except license key) and user

data under "flash:/" and reboot the device

Do you want to continue? (y/n):

3. Press Y to delete the current configuration and reset factory defaults.

The switch will login into the Web UI with its reverted default configuration. If you had exported
the switch’s previous configuration to an external location, it now can be imported back to the
switch.

RADIUS troubleshooting

This section covers troubleshooting and workarounds for common RADIUS problems. It includes
the following issues:

RADIUS Server does not start upon enable

RADIUS Server does not reply to my requests

RADIUS Server is rejecting the user

Time of Restriction configured does not work

Authentication fails at exchange of certificates

When using another Brocade Mobility RFS7000-GR Controller (switch 2) as RADIUS server,
access is rejected

Authentication using LDAP fails

VPN Authentication using onboard RADIUS server fails

Accounting does not work with external RADIUS Accounting Server