beautypg.com

6 configuring to support a type of radius server, 7 configuring the status of radius servers, Configuring to – H3C Technologies H3C S3100 Series Switches User Manual

Page 326: Support a type of, Radius server, Configuring the, Status of radius, Servers

background image

Operation Manual – AAA – RADIUS – HWTACACS

H3C S3100-52P Ethernet Switch

Chapter 1 AAA & RADIUS & HWTACACS

Configuration

1-27

1.4.6 Configuring to Support a Type of RADIUS Server

Table 1-17

Configure to support a type of RADIUS server

Operation

Command

Description

Enter system view

system-view

Create a RADIUS

scheme and enter its view

radius scheme

radius-scheme-name

Required
By default, a RADIUS

scheme named "system"

has already been created

in the system.

Configure the switch to

support a type of RADIUS

server

server-type

{ extended |

standard

}

Optional

1.4.7 Configuring the Status of RADIUS Servers

For the primary and secondary servers (authentication/authorization servers, or
accounting servers) in a RADIUS scheme:
When the switch fails to communicate with the primary server due to some server
trouble, the switch will turn to the secondary server and exchange messages with the
secondary server.
After the primary server remains in the block state for a set time (set by the timer quiet
command), the switch will try to communicate with the primary server again when it
receives a RADIUS request. If it finds that the primary server has recovered, the switch
immediately restores the communication with the primary server instead of
communicating with the secondary server, and at the same time restores the status of
the primary server to active while keeping the status of the secondary server
unchanged.
When both the primary and secondary servers are in active or block state, the switch
sends messages only to the primary server.

Table 1-18

Set the status of RADIUS servers

Operation

Command

Description

Enter system view

system-view

Create a RADIUS scheme

and enter its view

radius scheme

radius-scheme-name

Required
By default, a RADIUS

scheme named "system"

has already been created

in the system.