TP-Link T2500G-10MPS T2500G-10MPSUN V1 Configuration Guide - Page 630
Configuring Network Security, radius-server host
View all TP-Link T2500G-10MPS manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 630 highlights
Configuring Network Security 802.1X Configuration Step 3 Step 4 Step 5 Step 6 Step 7 radius-server host ip-address [ auth-port port-id ] [ acct-port port-id ] [ timeout time ] [ retransmit number ] [ key { [ 0 ] string | 7 encrypted-string } ] Add the RADIUS server and configure the related parameters as needed. host ip-address: Enter the IP address of the server running the RADIUS protocol. auth-port port-id: Specify the UDP destination port on the RADIUS server for authentication requests. The default setting is 1812. acct-port port-id: Specify the UDP destination port on the RADIUS server for accounting requests. The default setting is 1813. Generally, the accounting feature is not used in the authentication account management. timeout time: Specify the time interval that the switch waits for the server to reply before resending. The valid values are from 1 to 9 seconds and the default setting is 5 seconds. retransmit number: Specify the number of times a request is resent to the server if the server does not respond. The valid values are from 1 to 3 and the default setting is 2. key { [ 0 ] string | 7 encrypted-string }: Specify the shared key. 0 and 7 prevent the encryption type. 0 indicates that an unencrypted key will follow. 7 indicates that a symmetric encrypted key with a fixed length will follow. By default, the encryption type is 0. string is the shared key for the switch and the server, which contains 31 characters at most. encrypted-string is a symmetric encrypted key with a fixed length, which you can copy from the configuration file of another switch. The key or encrypted-key you configured here will be displayed in the encrypted form. aaa group radius group-name Create a radius server group. radius: Specify the group type as radius. group-name: Specify a name for the group. server ip-address Add the existing servers to the server group. ip-address: Specify IP address of the server to be added to the group. exit Return to global configuration mode. aaa authentication dot1x default { method } Select the radius group for 802.1X authentication. method: Specify the radius group for 802.1X authentication. aaa accounting dot1x default { method } Select the radius group for 802.1X accounting. method: Specify the radius group for 802.1X accounting. Note: If multiple radius servers are available, you are suggested to add them to different server groups respectively for authentication and accounting. Configuration Guide 603