TP-Link T1700G-28TQ T1700G-28TQ V1 CLI Reference Guide - Page 115

radius

Page 115 highlights

port-based: All the clients connected to the port can access the network on the condition that any one of the clients has passed the 802.1X Authentication. Command Mode Interface Configuration Mode (interface gigabitEthernet / interface range gigabitEthernet / interface ten-gigabitEthernet / interface range ten-gigabitEthernet) Example Configure the Control Type for Gigabit Ethernet port 1/0/20 as "port-based": T1700G-28TQ(config)#interface gigabitEthernet 1/0/20 T1700G-28TQ(config-if)#dot1x port-method port-based 16.12 radius Description The radius command is used to configure the parameters of radius. Syntax radius { [auth-pri ip] [auth-sec ip] [auth-port port] [acct-pri ip] [acct-sec ip] [acct-port port] [auth-key { [ 0 ] password | 7 encrypted-password } ] [acct-key { [ 0 ] password | 7 encrypted-password } ] } no radius { auth-port | auth-key | auth-pri | auth-sec | acct-port | acct-key | acct-pri | acct-sec } Parameter auth-pri ip -- The IP address of the authentication server. auth-sec ip -- The IP address of the alternative authentication server. auth-port port --The UDP port of authentication server(s) ranging from 1 to 65535. The default value is 1812. acct-pri ip -- The IP address of the accounting server. acct-sec ip -- The IP address of the alternative accounting server. acct-port port -- The UDP port of accounting server(s) ranging from 1 to 65535. The default value is 1813. auth-key { [ 0 ] password | 7 encrypted-password } -- 0 and 7 are the encryption type. 0 indicates that an unencrypted password will follow. 7 indicates that a symmetric encrypted password with a fixed length will follow. By default, the encryption type is 0. "password" is the shared password for the 101

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269

101
port-based: All the clients connected to the port can access the network on the
condition that any one of the clients has passed the 802.1X Authentication.
Command Mode
Interface Configuration Mode (interface gigabitEthernet / interface range
gigabitEthernet
/
interface
ten-gigabitEthernet
/
interface
range
ten-gigabitEthernet)
Example
Configure the Control Type for Gigabit Ethernet port 1/0/20 as “port-based”:
T1700G-28TQ(config)#interface gigabitEthernet
1/0/20
T1700G-28TQ(config-if)#dot1x port-method
port-based
16.12
radius
Description
The
radius
command is used to configure the parameters of radius.
Syntax
radius
{ [
auth-pri
ip
] [
auth-sec
ip
] [
auth-port
port
] [
acct-pri
ip
] [
acct-sec
ip
]
[
acct-port
port
] [
auth-key
{ [ 0 ]
password
| 7
encrypted-password
} ] [
acct-key
{ [ 0 ]
password
| 7
encrypted-password
} ] }
no radius
{ auth-port | auth-key | auth-pri | auth-sec | acct-port | acct-key |
acct-pri | acct-sec }
Parameter
auth-pri
ip
—— The IP address of the authentication server.
auth-sec
ip
—— The IP address of the alternative authentication server.
auth-port
port
——The UDP port of authentication server(s) ranging from 1 to
65535. The default value is 1812.
acct-pri
ip
—— The IP address of the accounting server.
acct-sec
ip
—— The IP address of the alternative accounting server.
acct-port
port
—— The UDP port of accounting server(s) ranging from 1 to
65535. The default value is 1813.
auth-key
{ [ 0 ]
password
| 7
encrypted-password
}
—— 0 and 7 are the
encryption type. 0 indicates that an unencrypted password will follow. 7
indicates that a symmetric encrypted password with a fixed length will follow. By
default, the encryption type is 0. “
password
is
the shared password for the