HP 6125G HP 6125G & 6125G/XG Blade Switches Security Command Reference - Page 45

RADIUS configuration commands, accounting-on enable

Page 45 highlights

or YYYY/MM/DD indicates the date, where YYYY ranges from 2000 to 2035, MM ranges from 1 to 12, and the range of DD depends on the month. Except for the zeros in 00:00:00, leading zeros can be omitted. For example, 2:2:0-2011/2/2 equals 02:02:00-2011/02/02. Description Use validity-date to set the validity time of a local user. Use undo validity-date to remove the configuration. By default, a local user has no validity time and no time validity checking is performed. For temporary network access requirements, create a guest account and specify a validity time and an expiration time for the account to control the validity of the account. When a user uses the guest account for local authentication and passes the authentication, the switch checks whether the current system time is between the validity time and the expiration time. If so, it permits the user to access the network. Otherwise, it denies the access request of the user. Related command: expiration-date. Examples # Set the validity time of user abc to 12:10:20 on April 30, 2011, and the expiration time to 12:10:20 on May 31, 2011. system-view [Sysname] local-user abc [Sysname-luser-abc] validity-date 12:10:20-2011/04/30 [Sysname-luser-abc] expiration-date 12:10:20-2011/05/31 RADIUS configuration commands accounting-on enable Syntax accounting-on enable [ interval seconds | send send-times ] * View undo accounting-on enable RADIUS scheme view Default level 2: System level Parameters seconds: Time interval for retransmitting an accounting-on packet in seconds, ranging from 1 to 15. The default setting is 3 seconds. send-times: Maximum number of accounting-on packet transmission attempts, ranging from 1 to 255. The default setting is 50. Description Use accounting-on enable to configure the accounting-on feature. This feature enables the switch to, after rebooting, automatically send an accounting-on message to the RADIUS accounting server indicated by the RADIUS scheme to stop accounting for and log out online users. 36

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291

36
or YYYY/MM/DD indicates the date, where YYYY ranges from 2000 to 2035, MM ranges from 1 to 12,
and the range of DD depends on the month. Except for the zeros in 00:00:00, leading zeros can be
omitted. For example, 2:2:0-2011/2/2 equals 02:02:00-2011/02/02.
Description
Use
validity-date
to set the validity time of a local user.
Use
undo validity-date
to remove the configuration.
By default, a local user has no validity time and no time validity checking is performed.
For temporary network access requirements, create a guest account and specify a validity time and an
expiration time for the account to control the validity of the account. When a user uses the guest account
for local authentication and passes the authentication, the switch checks whether the current system time
is between the validity time and the expiration time. If so, it permits the user to access the network.
Otherwise, it denies the access request of the user.
Related command:
expiration-date
.
Examples
# Set the validity time of user
abc
to 12:10:20 on April 30, 2011, and the expiration time to 12:10:20 on
May 31, 2011.
<Sysname> system-view
[Sysname] local-user abc
[Sysname-luser-abc] validity-date 12:10:20-2011/04/30
[Sysname-luser-abc] expiration-date 12:10:20-2011/05/31
RADIUS configuration commands
accounting-on enable
Syntax
accounting-on enable
[
interval
seconds
|
send
send-times
] *
undo accounting-on enable
View
RADIUS scheme view
Default level
2: System level
Parameters
seconds
: Time interval for retransmitting an accounting-on packet in seconds, ranging from 1 to 15. The
default setting is 3 seconds.
send-times
: Maximum number of accounting-on packet transmission attempts, ranging from 1 to 255.
The default setting is 50.
Description
Use
accounting-on enable
to configure the accounting-on feature. This feature enables the switch to, after
rebooting, automatically send an accounting-on message to the RADIUS accounting server indicated by
the RADIUS scheme to stop accounting for and log out online users.