HP 8/20q HP StorageWorks 8/20q Fibre Channel Switch Command Line Interface Gui - Page 85

RADIUS Server Configuration, Displaying RADIUS server information

Page 85 highlights

8 RADIUS Server Configuration Authentication can be performed locally using the switch's security database, or remotely using a Remote Dial-In User Service (RADIUS) server such as Microsoft RADIUS. With a RADIUS server, the security database for the entire fabric resides on the server. In this way, the security database can be managed centrally, rather than on each switch. However, when using a RADIUS server, every switch in the fabric must have a network connection. You can configure up to five RADIUS servers to provide failover. You can configure a RADIUS server to authenticate only the switch or both the switch and the initiator device, if the device supports authentication. A RADIUS server can also be configured to authenticate user accounts. See "User Account Configuration" (page 17). A secure connection is required to authenticate user logins with a RADIUS server. See "Connection Security Configuration" (page 83). Displaying RADIUS server information To display RADIUS server information, enter the show setup radius command, as shown in the following example. For information about RADIUS server configuration parameters, see Table 47. 8/20q FC Switch #> show setup radius Radius Information DeviceAuthOrder Local UserAuthOrder Local TotalServers 2 Server: 1 ServerIPAddress ServerUDPPort DeviceAuthServer UserAuthServer AccountingServer Timeout Retries SignPackets Secret 10.0.0.13 1812 False False False 2 0 False ******** Server: 2 ServerIPAddress ServerUDPPort DeviceAuthServer UserAuthServer AccountingServer Timeout Retries SignPackets Secret bacd:1234:bacd:1234:bacd:1234:bacd:1234 1812 True True True 2 0 False ******** HP StorageWorks 8/20q Fibre Channel Switch Command Line Interface Guide 85

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330

HP StorageWorks 8/20q Fibre Channel Switch Command Line Interface Guide
85
8
RADIUS Server Configuration
Authentication can be performed locally using the switch’s security database, or remotely using a Remote
Dial-In User Service (RADIUS) server such as Microsoft RADIUS. With a RADIUS server, the security
database for the entire fabric resides on the server. In this way, the security database can be managed
centrally, rather than on each switch. However, when using a RADIUS server, every switch in the fabric
must have a network connection. You can configure up to five RADIUS servers to provide failover.
You can configure a RADIUS server to authenticate only the switch or both the switch and the initiator
device, if the device supports authentication. A RADIUS server can also be configured to authenticate user
accounts. See ”
User Account Configuration
” (page 17). A secure connection is required to authenticate
user logins with a RADIUS server. See ”
Connection Security Configuration
” (page 83).
Displaying RADIUS server information
To display RADIUS server information, enter the
show setup radius
command, as shown in the
following example. For information about RADIUS server configuration parameters, see
Table 47
.
8/20q FC Switch #> show setup radius
Radius Information
------------------
DeviceAuthOrder
Local
UserAuthOrder
Local
TotalServers
2
Server: 1
ServerIPAddress
10.0.0.13
ServerUDPPort
1812
DeviceAuthServer
False
UserAuthServer
False
AccountingServer
False
Timeout
2
Retries
0
SignPackets
False
Secret
********
Server: 2
ServerIPAddress
bacd:1234:bacd:1234:bacd:1234:bacd:1234
ServerUDPPort
1812
DeviceAuthServer
True
UserAuthServer
True
AccountingServer
True
Timeout
2
Retries
0
SignPackets
False
Secret
********