
Configuring Device Security
Configuring Server Based Authentication
Page 61
– Both — Indicates the RADIUS recording session is used for 802.1X authentication and management
accounting from login to logout.
• Default Retries — Defines the default number of transmitted requests sent to the RADIUS server before a
failure occurs. Possible field values are 1-10. The default number of retries is 3.
• Default Timeout for Reply — Defines the default time interval in seconds that passes before the connection
between the device and the TACACS+ server times out. The field range is 1-30 seconds and the default is 5
seconds.
• Default Dead Time — Defines the default amount of time (in minutes) that a RADIUS server is bypassed for
service requests. The range is 0-2000.
• Default Source IPv4 Address — Defines the default IPv4 address. The default IPv4 addresses are 32 bits.
• Default Source IPv6 Address — Defines the default IPv6 address. The address must be a valid IPv6
address, specified in hexadecimal using 16-bit values between colons.
• Default Key String — Defines the default key string used for authenticating and encrypting all
RADIUS-communications between the device and the RADIUS server. This key must match the RADIUS
encryption.
The RADIUS table lists known RADIUS servers and contains the following fields:
• # — Displays the RADIUS server number.
• IP Address — Displays the RADIUS server IP address.
• Priority — Displays the RADIUS server priority. The possible values are 1-65535, where 1 is the highest
value. The RADIUS server priority is used to configure the server query order.
• Authentication Port — Identifies the authentication port. The authentication port is used to verify the
RADIUS server authentication. The authenticated port default is 1812.
• Accounting Port — Identifies the accounting port. The accounting port is used to verify the RADIUS server
recording session. The accounting port default is 1813.
• Number of Retries — Defines the number of transmitted requests sent to the RADIUS server before a failure
occurs. Possible field values are 1-10.
• Timeout for Reply — Defines the time interval in seconds that passes before the connection between the
device and the RADIUS server times out. The field range is 1-30 seconds and the default is 3 seconds.
• Dead Time — Defines the amount of time (in minutes) that a RADIUS server is bypassed for service
requests. The range is 0-2000. The default is 0 minutes.
• Source IP Address — Displays the default IP address of a device accessing the RADIUS server.
• Usage Type — Specifies the RADIUS server authentication type. The default value is All. The possible field
values are:
– Log in — Indicates the RADIUS server is used for authenticating user name and passwords.
– 802.1X — Indicates the RADIUS server is used for 802.1X authentication.
– All — Indicates the RADIUS server is used for authenticating user names and passwords, and 802.1X
port authentication.
Comentários a estes Manuais