Configuring aaa authentication on devices – H3C Technologies H3C Intelligent Management Center User Manual
Page 565

547
Configuring AAA authentication on devices
The following authentication methods can apply to login users: no authentication, password
authentication, and AAA authentication. To implement unified authentication on UAM, you must
configure AAA authentication on the managed devices.
To configure AAA authentication on a managed device, use the following guidelines:
1.
Configure the device to perform AAA authentication.
On HP Comware and H3C devices, use the authentication-mode scheme command.
2.
Create a RADIUS scheme, and specify UAM as the RADIUS authentication and accounting server.
On HP Comware and H3C devices, use the primary authentication x.x.x.x 1812 command and
the primary accounting x.x.x.x 1813 command, where x.x.x.x represents the IP address of UAM.
3.
Configure the AAA methods for the domain created on the device.
On HP Comware and H3C devices, use the authentication login radius-scheme xxx, authorization
login radius-scheme xxx, and accounting login radius-scheme xxx commands, where xxx
represents the name of the RADIUS scheme created in the previous step.
Viewing authentication logs of device management
users in UAM
Authentication logs show successful logins and login failures for device management users.
To view the authentication logs in UAM:
1.
Log in to IMC.
2.
Click the User tab.
3.
Select User Access Log > Device User Auth Log from the navigation tree.
The device user authentication log list page displays all authentication logs of device management users.
For more information, see "
Managing device management user authentication logs
."