Aaa operations for radius – Brocade BigIron RX Series Configuration Guide User Manual
Page 171
BigIron RX Series Configuration Guide
93
53-1002484-04
Configuring RADIUS security
3
AAA operations for RADIUS
The following table lists the sequence of authentication, authorization, and accounting operations
that take place when a user gains access to a BigIron RX that has RADIUS security configured.
User action
Applicable AAA operations
User attempts to gain access to the
Privileged EXEC and CONFIG levels of the
CLI
Enable authentication:
aaa authentication enable default
<
method-list>
System accounting start:
aaa accounting system default start-stop
<
method-list>
User logs in using Telnet/SSH
Login authentication:
aaa authentication login default
<
method-list>
EXEC accounting Start:
aaa accounting exec default start-stop
<
method-list>
System accounting Start:
aaa accounting system default start-stop
<
method-list>
User logs into the Web management
interface
Web authentication:
aaa authentication web-server default
<
method-list>
User logs out of Telnet/SSH session
Command authorization for logout command:
aaa authorization commands
<
privilege-level> default
<
method-list>
Command accounting:
aaa accounting commands
<
privilege-level> default start-stop
<
method-list>
EXEC accounting stop:
aaa accounting exec default start-stop
<
method-list>
User enters system commands
(for example, reload, boot system)
Command authorization:
aaa authorization commands
<
privilege-level> default
<
method-list>
Command accounting:
aaa accounting commands
<
privilege-level> default start-stop
<
method-list>
System accounting stop:
aaa accounting system default start-stop
<
method-list>
User enters the command:
[no] aaa accounting system default
start-stop
<
method-list>
Command authorization:
aaa authorization commands
<
privilege-level> default
<
method-list>
Command accounting:
aaa accounting commands
<
privilege-level> default start-stop
<
method-list>
System accounting start:
aaa accounting system default start-stop
<
method-list>
User enters other commands
Command authorization:
aaa authorization commands
<
privilege-level> default
<
method-list>
Command accounting:
aaa accounting commands
<
privilege-level> default start-stop
<
method-list>