2 password of router administrator, 4 login cannot be authenticated using radius, 2 password of router administrator -8 – Hitachi GR2000 Series User Manual

Page 174: 4 login cannot be authenticated using radius -8

Advertising
background image

Hitachi Gigabit Router GR2000 Series Enhanced Version Operations - Device Management Overview

7-8

GR2K-GA-0015

Ver. 07-02

Figure 7-1 Change of password of login user by router administrator

7.2.3.2

Password of router administrator

During operation, default-restart and set the password again when all login users
who have the authority of a router administrator have forgotten their router
administrator passwords and cannot enter the router administrator mode (see
Section 2.2, “Starting the router” for the operation of the default restart.)

7.2.4

Login cannot be authenticated using RADIUS

Confirm the following when login cannot be authenticated using RADIUS.

1. Communication with RADIUS server

Confirm by using a ping command whether the router can communicate with the
RADIUS server. See Subsection 7.5.1, “Communication cannot be done or
communication is disconnected”
, when the router cannot communicate. Confirm
that the route for the local address of the router exists in the RADIUS server
when a local address is defined by using configuration definition information.

2. Setting of time-out value and retry count

The time required for judging that the router cannot communicate with the
RADIUS server by the setting of a configuration definition command (CLI type 1)
(radius) is <Set time-out value (second)> x <Set retry count> x <Number of set
RADIUS servers> (maximum). The application (telnet, etc.) of a remote operation
terminal may be terminated due to time-out when this time increases
significantly. In this case, change the setting of the RADIUS configuration
definition information or the time-out setting of the application used in the
remote operation terminal. Time-out is also judged to occur in the application of
the remote operation terminal before the connection to a RADIUS server in
operation, among multiple RADIUS servers specified using configuration
definition information, and is established when telnet or ftp fails in spite of the
fact that a message indicating the success in RADIUS authentication is output to
the operation log. Set the RADIUS server therefore in operation preferentially or
decrease the <Time-out value (second)> x <Number of retry times> value.

# password user1

Changing local password for user1.

New password:

New password:

#

Advertising