Yamaha 10G SWR2310-28GT/18GT/10G Command Reference - Page 149

Set RADIUS server host

Page 149 highlights

Command Reference | Interface control | 149 To use this command, you must enable the port authentication function for the applicable interface. (dot1x port-control command, auth-mac enable command, auth-web enable command) [Example] Set the reply wait time from the supplicant of LAN port #1 to 180 seconds. SWR2310(config)#interface port1.1 SWR2310(config-if)#auth timeout supp-timeout 180 5.3.18 Set RADIUS server host [Syntax] radius-server host host [auth-port port] [timeout time] [retransmit count] [key secret] no radius-server host [Keyword] auth-port : Sets the UDP port number used for authenticating the RADIUS server timeout : Sets the reply standby time for requests sent to the RADIUS server retransmit : Sets the number of times to resend the request to the RADIUS server key : Sets the password used for communicating with the RADIUS server [Parameter] host port time count secret : IPv4 address (A.B.C.D) or IPv6 address (A:B:C:D:E:F:G:H) When specifying an IPv6 link local address, the transmitting interface also needs to be specified (fe80::X%vlanN format). : UDP port number used for authentication (the default value of 1812 is used when this is omitted) : Reply standby time (in seconds; the settings for the radius-server timeout command--5 sec. at default are used if this is omitted) : Number of times to resend (the settings for the radius-server retransmit command--3 times. at default are used if this is omitted) : Single-byte alphanumeric characters, and single-byte symbols other than the characters '?' and spaces (64 characters or less) Shared password (the settings for the radius-server key command are used if this is omitted) [Initial value] none [Input mode] global configuration mode [Description] Adds a server to the authentication server list. The maximum number of entries is 8. If this command is executed with the "no" syntax, this deletes the specified server from the authentication server list. [Example] Add the server at IP address 192.168.100.100, with a reply standby time of 10 seconds and a number of times to resend requests of 5 seconds to the authentication server list. SWR2310(config)#radius-server host 192.168.100.100 timeout 10 retransmit 5 Add the server at IP address 192.168.100.101, with an authentication UDP port of 1645 and a shared password of "abcde" to the authentication server list. SWR2310(config)#radius-server host 192.168.100.101 auth-port 1645 key abcde

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278

To use this command, you must enable the port authentication function for the applicable interface. (
dot1x port-control
command,
auth-mac enable
command,
auth-web enable
command)
[Example]
Set the reply wait time from the supplicant of LAN port #1 to 180 seconds.
SWR2310(config)#interface port1.1
SWR2310(config-if)#auth timeout supp-timeout 180
5.3.18 Set RADIUS server host
[Syntax]
radius-server
host
host
[
auth-port
port
] [
timeout
time
] [
retransmit
count
] [
key
secret
]
no
radius-server
host
[Keyword]
auth-port
:
Sets the UDP port number used for authenticating the RADIUS server
timeout
:
Sets the reply standby time for requests sent to the RADIUS server
retransmit
:
Sets the number of times to resend the request to the RADIUS server
key
:
Sets the password used for communicating with the RADIUS server
[Parameter]
host
:
IPv4 address (A.B.C.D) or IPv6 address (A:B:C:D:E:F:G:H)
When specifying an IPv6 link local address, the transmitting interface also needs to be specified
(fe80::X%vlanN format).
port
:
<0-65535>
UDP port number used for authentication (the default value of 1812 is used when this is omitted)
time
:
<1-1000>
Reply standby time (in seconds; the settings for the radius-server timeout command--5 sec. at default
are used if this is omitted)
count
:
<0-100>
Number of times to resend (the settings for the radius-server retransmit command--3 times. at default
are used if this is omitted)
secret
:
Single-byte alphanumeric characters, and single-byte symbols other than the characters '?' and spaces
(64 characters or less)
Shared password (the settings for the radius-server key command are used if this is omitted)
[Initial value]
none
[Input mode]
global configuration mode
[Description]
Adds a server to the authentication server list.
The maximum number of entries is 8.
If this command is executed with the "no" syntax, this deletes the specified server from the authentication server list.
[Example]
Add the server at IP address 192.168.100.100, with a reply standby time of 10 seconds and a number of times to resend requests
of 5 seconds to the authentication server list.
SWR2310(config)#radius-server host 192.168.100.100 timeout 10 retransmit 5
Add the server at IP address 192.168.100.101, with an authentication UDP port of 1645 and a shared password of "abcde" to the
authentication server list.
SWR2310(config)#radius-server host 192.168.100.101 auth-port 1645 key abcde
Command Reference | Interface control |
149