HP StorageWorks 8/20q HP StorageWorks 8/20q Fibre Channel Switch command line - Page 178

set setup radius, Table 40 RADIUS service attributes, Description, Authority, Syntax, Attribute

Page 178 highlights

set setup radius Description Configures RADIUS servers on the switch. Authority Admin session Syntax set setup radius Prompts you in a line-by-line fashion to configure RADIUS servers for user account and device authentication. Table 40 describes the RADIUS server configuration attributes. Table 40 RADIUS service attributes Attribute DeviceAuthOrder UserAuthOrder TotalServers ServerIPAddress ServerUDPPort DeviceAuthServer UserAuthServer AccountingServer Timeout Retries Description Authenticator priority for devices: • Local: Authenticate devices using only the local security database. This is the default. • Radius: Authenticate devices using only the security database on the RADIUS server. • RadiusLocal: Authenticate devices using the RADIUS server security database first. If the RADIUS server is unavailable, then use the local switch security database. Authenticator priority for user accounts: • Local: Authenticate users using only the local security database. This is the default. • Radius: Authenticate users using only the security database on the RADIUS server. • RadiusLocal: Authenticate users using the RADIUS server security database first. If the RADIUS server is unavailable, then use the local switch security database. Number of RADIUS servers to configure during this session. Setting TotalServers to 0 disables all RADIUS authentication. The default is 0. IP address of the RADIUS server. The default is 10.0.0.1. User Datagram Protocol (UDP) port number on the RADIUS server. The default is 1812. Enable (True) or disable (False) this server for device authentication. The default is False. Enable (True) or disable (False) this server for user account authentication. A user authentication RADIUS server requires a secure management connection (SSL). The default is True. Enable (True) or disable (False) this server for auditing of activity during a user session. When enabled, user activity is audited whether UserAuthServer is enabled or not.The default is False. The accounting server UDP port number is the ServerUDPPort value plus 1 (the default is 1813). Number of seconds to wait to receive a response from the RADIUS server before timing out. The default is 2. Number of retries after the first attempt to establish communication with the RADIUS server fails. The default is 0. 178 Command reference

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270

178
Command reference
set setup radius
Description
Configures RADIUS servers on the switch.
Authority
Admin session
Syntax
set setup radius
Prompts you in a line-by-line fashion to configure RADIUS servers for user account and device
authentication.
Table 40
describes the RADIUS server configuration attributes.
Table 40
RADIUS service attributes
Attribute
Description
DeviceAuthOrder
Authenticator priority for devices:
Local
: Authenticate devices using only the local security database.
This is the default.
Radius
: Authenticate devices using only the security database on the
RADIUS server.
RadiusLocal
: Authenticate devices using the RADIUS server security
database first. If the RADIUS server is unavailable, then use the local
switch security database.
UserAuthOrder
Authenticator priority for user accounts:
Local
: Authenticate users using only the local security database. This
is the default.
Radius
: Authenticate users using only the security database on the
RADIUS server.
RadiusLocal
: Authenticate users using the RADIUS server security
database first. If the RADIUS server is unavailable, then use the local
switch security database.
TotalServers
Number of RADIUS servers to configure during this session. Setting
TotalServers to
0
disables all RADIUS authentication. The default is
0
.
ServerIPAddress
IP address of the RADIUS server. The default is
10.0.0.1
.
ServerUDPPort
User Datagram Protocol (UDP) port number on the RADIUS server. The
default is
1812
.
DeviceAuthServer
Enable (
True
) or disable (
False
) this server for device authentication.
The default is
False
.
UserAuthServer
Enable (
True
) or disable (
False
) this server for user account
authentication. A user authentication RADIUS server requires a secure
management connection (SSL). The default is
True
.
AccountingServer
Enable (
True
) or disable (
False
) this server for auditing of activity
during a user session. When enabled, user activity is audited whether
UserAuthServer
is enabled or not.The default is
False
. The
accounting server UDP port number is the
ServerUDPPort
value plus 1
(the default is 1813).
Timeout
Number of seconds to wait to receive a response from the RADIUS server
before timing out. The default is
2
.
Retries
Number of retries after the first attempt to establish communication with
the RADIUS server fails. The default is
0
.