AAA and RADIUS Protocol Configuration 215
When the primary and secondary servers are both active or block, NAS will send
the packets to the primary server only.
Perform the following configurations in RADIUS Scheme View.
Tab le 230 Setting the RADIUS Server State
By default, for the newly created RADIUS scheme, the primary and secondary
accounting/authentication servers are in the state of
block; for the "system"
RADIUS scheme created by the system, the primary accounting/authentication
servers are in the state of
active, and the secondary accounting/authentication
servers are in the state of
block.
Setting the Username
Format Transmitted to
the RADIUS Server
As mentioned above, the users are generally named in userid@isp-name format.
The part following “@” is the ISP domain name. The Switch will put the users into
different ISP domains according to the domain names. However, some earlier
RADIUS servers reject the username including ISP domain name. In this case, you
have to remove the domain name before sending the username to the RADIUS
server. The following command of switch decides whether the username to be
sent to RADIUS server carries ISP domain name or not.
Perform the following configurations in RADIUS Scheme View.
Tab le 231 Setting the Username Format Transmitted to the RADIUS Server
If a RADIUS scheme is configured not to allow usernames including ISP domain
names, the RADIUS scheme shall not be simultaneously used in more than one ISP
domain. Otherwise, the RADIUS server will regard two users in different ISP
domains as the same user by mistake, if they have the same username (excluding
their respective domain names.)
By default, the RADIUS scheme acknowledges that the username sent to it
includes the ISP domain name.
Setting the Unit of Data
Flow that Transmitted to
the RADIUS Server
The following command defines the unit of the data flow sent to RADIUS server.
Perform the following configurations in RADIUS Scheme View
Tab le 232 Setting the Unit of Data Flow Transmitted to the RADIUS Server
Operation Command
Set the state of primary RADIUS server state primary { accounting |
authentication } { block | active }
Set the state of second RADIUS server state secondary{ accounting |
authentication } { block | active }
Operation Command
Set Username Format Transmitted to
RADIUS Server
user-name-format { with-domain |
without-domain }
Operation Command
Set the unit of data flow
transmitted to RADIUS
server
data-flow-format data { byte | giga-byte |
kilo-byte | mega-byte } packet { giga-byte |
kilo-byte | mega-byte | one-packet }
Restore the unit to the
default setting
undo data-flow-format