Configuring radius schemes, Configuration task list – H3C Technologies H3C S6300 Series Switches User Manual
Page 37
22
Step Command
Remarks
4.
(Optional.) Configure
password control attributes
for the user group.
•
Set the password aging time:
password-control aging
aging-time
•
Set the minimum password length:
password-control length length
•
Configure the password
composition policy:
password-control composition
type-number type-number
[ type-length type-length ]
•
Configure the password
complexity checking policy:
password-control complexity
{ same-character | user-name }
check
•
Configure the maximum login
attempts and the action to take for
login failures:
password-control login-attempt
login-times [ exceed { lock |
lock-time time | unlock } ]
Optional.
By default, the user group uses
the global password control
settings. For more information,
see "
."
Displaying and maintaining local users and local user groups
Execute display commands in any view.
Task Command
Display the local user
configuration and online user
statistics.
display local-user [ class { manage | network } | service-type { ftp | http |
https | lan-access | portal | ssh | telnet | terminal } | state { active | block }
| user-name user-name | vlan vlan-id ]
Display the user group
configuration.
display user-group [ group-name ]
Configuring RADIUS schemes
A RADIUS scheme specifies the RADIUS servers that the device can work with and defines a set of
parameters. The device uses the parameters to exchange information with the RADIUS servers, including
the server IP addresses, UDP port numbers, shared keys, and server types.
Configuration task list
Tasks at a glance
Specifying the RADIUS authentication servers
(Optional.)
Specifying the RADIUS accounting servers and the relevant parameters
(Optional.)
Specifying the shared keys for secure RADIUS communication
(Optional.)