CISCO AAA配置

Step1:指定AAA服务器信息

radius-server attribute nas-port format c
radius-server host 10.185.0.91 auth-port 1812 acct-port 1813 retransmit 3
radius-server host 10.185.0.92 auth-port 1812 acct-port 1813 retransmit 3
radius-server host 10.185.87.9 auth-port 1812 acct-port 1813 retransmit 3
radius-server retransmit 1
radius-server timeout 2
radius-server deadtime 30
radius-server key 7 10465A1A

Step2:认证接口配置

interface GigabitEthernet1/0/24
switchport access vlan 80
switchport mode access
authentication host-mode multi-auth
authentication order mab dot1x                       //认证顺序依次为mab/dot1x,两者只有一者存在均可
authentication port-control auto
authentication periodic
authentication timer reauthenticate 60
authentication timer restart 30
mab
dot1x pae authenticator
end

猜你喜欢

转载自www.cnblogs.com/networking/p/11723822.html