RADIUS Help
Help for RADIUS Accounting Server Configuration
Selection Criteria
- Accounting Server IP Address -
Selects the accounting server for which data is to be displayed or
configured. If the add item is selected, a new accounting server
can be configured.
Configurable Data
- IP Address
- The IP address of the accounting server to add. This field is only
configurable if the add item is selected.
- Port -
Specifies the UDP Port to be used by the accounting server.
The valid range is 0 - 65535.
If the user has READONLY access, the value is displayed but cannot be changed.
- Secret -
Specifies the shared secret to use with the specfied accounting server. This
field is only displayed if the user has READWRITE access.
- Apply -
The Secret will only be applied if this box is checked. If the box is not
checked, anything entered in the Secret field will have no affect and will not be retained.
This field is only displayed if the user has READWRITE access.
Non-Configurable Data
- Secret Configured
- Indicates if the secret has been configured for this accounting server.
Command Buttons
- Submit - Send
the updated screen to the switch and cause the changes to take effect on
the switch but these changes will not be retained across a power cycle
unless a save is performed.
- Remove - Remove the selected accounting server from the
configuration. This button is only available to READWRITE users.
These changes will not be retained across a power cycle
unless a save is performed.
- Refresh - Update the information on the page.
Help for Radius Accounting Server Statistics
Non-Configurable Statistics
- Accounting Server IP Address
- Identifies the accounting
server associated with the statistics.
- Round Trip Time (secs)
- Displays the time interval, in hundredths of a second, between the most
recent Accounting-Response and the Accounting-Request that matched it from
this RADIUS accounting server.
- Accounting Requests
- Displays the number of RADIUS Accounting-Request packets sent not including
retransmissions.
- Accounting Retransmissions
- Displays the number of RADIUS Accounting-Request packets retransmitted to this
RADIUS accounting server.
- Accounting Responses
- Displays the number of RADIUS packets received on the accounting port
from this server.
- Malformed Accounting Responses
- Displays the number of malformed RADIUS Accounting-Response packets received
from this server. Malformed packets include packets with an invalid length.
Bad authenticators and unknown types are not included as malformed accounting
responses.
- Bad Authenticators
- Displays the number of RADIUS Accounting-Response packets that contained
invalid authenticators received from this accounting server.
- Pending Requests
- Displays the number of RADIUS Accounting-Request packets sent to this
server that have not yet timed out or received a response.
- Timeouts
- Displays the number of accounting timeouts to this server.
- Unknown Types
- Displays the number of RADIUS packets of unknown type that were received
from this server on the accounting port.
- Packets Dropped
- Displays the number of RADIUS packets that were received from this server
on the accounting port and dropped for some other reason.
Command Buttons
- Refresh - Update the information on the page.
Help for RADIUS Configuration
Configurable Data
- Max Number of Retransmits -
- The value of the maximum number of times a request packet
is retransmitted. The valid range is 1 - 15.
Consideration to maximum delay time should be given when configuring
RADIUS maxretransmit and RADIUS timeout. If multiple RADIUS servers are
configured, the max retransmit value on each will be exhausted before
the next server is attempted. A retransmit will not occur until the
configured timeout value on that server has passed without a response
from the RADIUS server. Therefore, the maximum delay in receiving a
response from the RADIUS application equals the sum of
(retransmit times timeout) for all configured servers. If the RADIUS
request was generated by a user login attempt, all user interfaces
will be blocked until the RADIUS application returns a response.
- Timeout Duration (secs) -
- The timeout value, in seconds, for request retransmissions. The valid range is
1 - 30.
Consideration to maximum delay time should be given when configuring
RADIUS maxretransmit and RADIUS timeout. If multiple RADIUS servers are
configured, the max retransmit value on each will be exhausted before
the next server is attempted. A retransmit will not occur until the
configured timeout value on that server has passed without a response
from the RADIUS server. Therefore, the maximum delay in receiving a
response from the RADIUS application equals the sum of
(retransmit times timeout) for all configured servers. If the RADIUS
request was generated by a user login attempt, all user interfaces
will be blocked until the RADIUS application returns a response.
- Accounting Mode -
- Selects if the RADIUS accounting mode is enabled or disabled.
Non-Configurable Data
- Current Server IP Address
- The IP address of the current server. This field is blank if no servers are
configured.
- Number of Configured Servers -
- The number of RADIUS servers that have been configured. This value will be in
the range of 0 and 3.
Command Buttons
- Submit - Send
the updated screen to the switch and cause the changes to take effect on
the switch but these changes will not be retained across a power cycle
unless a save is performed.
- Refresh - Update the information on the page.
Help for RADIUS Clear Statistics
Command Buttons
- Clear All RADIUS Statistics
- This button will clear the accounting server, authentication server and RADIUS statistics.
Help for RADIUS Server Statistics
Selection Criteria
- RADIUS Server IP Address
- Selects the IP address of the RADIUS server for which to display
statistics.
Non-Configurable Data
- Round Trip Time (secs)
- The time interval, in hundredths of a second, between the most recent
Access-Reply/Access-Challenge and the Access-Request that matched it from
this RADIUS authentication server.
- Access Requests -
- The number of RADIUS Access-Request packets sent to this server. This number
does not include retransmissions.
- Access Retransmissions -
- The number of RADIUS Access-Request packets retransmitted to this server.
- Access Accepts -
- The number of RADIUS Access-Accept packets, including both valid and invalid
packets, that were received from this server.
- Access Rejects -
- The number of RADIUS Access-Reject packets, including both valid and invalid
packets, that were received from this server.
- Access Challenges -
- The number of RADIUS Access-Challenge packets, including both valid and invalid
packets, that were received from this server.
- Malformed Access Responses -
- The number of malformed RADIUS Access-Response packets received from this
server. Malformed packets include packets with an invalid length. Bad
authenticators or signature attributes or unknown types are not included
as malformed access-responses.
- Bad Authenticators -
- The number of RADIUS Access-Response packets containing invalid authenticators
or signature attributes received from this server.
- Pending Requests -
- The number of RADIUS Access-Request packets destined for this server that
have not yet timed out or received a response.
- Timeouts -
- The number of authentication timeouts to this server.
- Unknown Types -
- The number of RADIUS packets of unknown type which were received from this server
on the authentication port.
- Packets Dropped -
- The number of RADIUS packets received from this server on the authentication
port and dropped for some other reason.
Command Buttons
- Refresh - Update the information on the page.
Help for RADIUS Server Configuration
Selection Criteria
- RADIUS Server IP Address
- Selects the RADIUS server to be configured. Select add to add a server.
Configurable Data
- IP Address -
- The IP address of the server being added.
- Port -
- The UDP port used by this server.
The valid range is 0 - 65535.
- Secret -
- The shared secret for this server. This is an input field only.
- Apply -
The Secret will only be applied if this box is checked. If the box is not
checked, anything entered in the Secret field will have no affect and will not be retained.
This field is only displayed if the user has READWRITE access.
- Primary Server
- Sets the selected server to thePrimary or Secondary server.
- Message Authenticator
- Enable or disable the message authenticator attribute for the selected server.
Non-Configurable Data
- Current
- Indicates if this server is currently in use as the authentication server.
- Secret Configured
- Indicates if the shared secret for this server has been configured.
Command Buttons
- Submit - Send
the updated screen to the switch and cause the changes to take effect on
the switch but these changes will not be retained across a power cycle
unless a save is performed.
- Remove - Remove the selected server from the
configuration. This button is only available to READWRITE users.
These changes will not be retained across a power cycle
unless a save is performed.
- Refresh - Update the information on the page.
Help for RADIUS Statistics
Non-Configurable Data
- Invalid Server Addresses
- The number of RADIUS Access-Response packets received from unknown addresses.
Command Buttons
- Refresh - Update the information on the page.