TP-Link T1700X-16TS T1700X-16TSUN V1 CLI Reference Guide - Page 113

radius

Page 113 highlights

Command Mode Interface Configuration Mode (interface ten-gigabitEthernet / interface range ten-gigabitEthernet) Example Configure the Control Type for Ten-Gigabit Ethernet port 1/0/12 as "port-based": T1700X-16TS(config)#interface ten-gigabitEthernet 1/0/12 T1700X-16TS(config-if)#dot1x port-method port-based 16.12 radius Description The radius command is used to configure the parameters of radius. Syntax radius { [auth-pri ip] [auth-sec ip] [auth-port port] [acct-pri ip] [acct-sec ip] [acct-port port] [auth-key { [ 0 ] password | 7 encrypted-password } ] [acct-key { [ 0 ] password | 7 encrypted-password } ] } no radius { auth-port | auth-key | auth-pri | auth-sec | acct-port | acct-key | acct-pri | acct-sec } Parameter auth-pri ip -- The IP address of the authentication server. auth-sec ip -- The IP address of the alternative authentication server. auth-port port --The UDP port of authentication server(s) ranging from 1 to 65535. The default value is 1812. acct-pri ip -- The IP address of the accounting server. acct-sec ip -- The IP address of the alternative accounting server. acct-port port -- The UDP port of accounting server(s) ranging from 1 to 65535. The default value is 1813. auth-key { [ 0 ] password | 7 encrypted-password } -- 0 and 7 are the encryption type. 0 indicates that an unencrypted password will follow. 7 indicates that a symmetric encrypted password with a fixed length will follow. By default, the encryption type is 0. "password" is the shared password for the switch and the authentication servers to exchange messages which contains 31 characters at most. The question marks and spaces are not allowed. "encrypted-password" is a symmetric encrypted password with a fixed length, which you can copy from another switch's configuration file. The password or 99

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274

Command Mode
Interface Configuration Mode (interface ten-gigabitEthernet / interface range
ten-gigabitEthernet)
Example
Configure the Control Type for Ten-Gigabit Ethernet port 1/0/12 as “port-based”:
T1700X-16TS(config)#interface ten-gigabitEthernet
1/0/12
T1700X-16TS(config-if)#dot1x port-method
port-based
16.12 radius
Description
The
radius
command is used to configure the parameters of radius.
Syntax
radius
{ [
auth-pri
ip
] [
auth-sec
ip
] [
auth-port
port
] [
acct-pri
ip
] [
acct-sec
ip
]
[
acct-port
port
] [
auth-key
{ [ 0 ]
password
| 7
encrypted-password
} ] [
acct-key
{ [ 0 ]
password
| 7
encrypted-password
} ] }
no radius
{ auth-port | auth-key | auth-pri | auth-sec | acct-port | acct-key |
acct-pri | acct-sec }
Parameter
auth-pri
ip
—— The IP address of the authentication server.
auth-sec
ip
—— The IP address of the alternative authentication server.
auth-port
port
——The UDP port of authentication server(s) ranging from 1 to
65535. The default value is 1812.
acct-pri
ip
—— The IP address of the accounting server.
acct-sec
ip
—— The IP address of the alternative accounting server.
acct-port
port
—— The UDP port of accounting server(s) ranging from 1 to
65535. The default value is 1813.
auth-key
{ [ 0 ]
password
| 7
encrypted-password
}
—— 0 and 7 are the
encryption type. 0 indicates that an unencrypted password will follow. 7
indicates that a symmetric encrypted password with a fixed length will follow. By
default, the encryption type is 0. “
password
is
the shared password for the
switch and the authentication servers to exchange messages which contains 31
characters at most. The question marks and spaces are not allowed.
encrypted-password
” is a symmetric encrypted password with a fixed length,
which you can copy from another switch’s configuration file. The password or
99