6 radius-sever key – Fortinet 548B User Manual

Page 261

Advertising
background image

- 261 -

number, the IP address must match that of a previously configured RADIUS authentication server. The
port number must lie between 1 - 65535, with 1812 being the default value.

If the 'acct' token is used, the command configures the IP address to use for the RADIUS accounting
server. Only a single accounting server can be configured. If an accounting server is currently
configured, it must be removed from the configuration using the no form of the command before this
command succeeds. If the optional <port> parameter is used, the command will configure the UDP port
to use to connect to the RADIUS accounting server. The IP address specified must match that of a
previously configured accounting server. If a port is already configured for the accounting server then the
new port will replace the previously configured value. The port must be a value in the range 1 - 65535,
with 1813 being the default value.

Syntax

radius-server host {acct | auth} <ipaddr|hostname> [port <port>]
no radius-server host {acct | auth} <ipaddr|hostname>

<ipaddr|hostname > - is a IP address or a hostname.

<port> - Port number (Range: 1

– 65535)

no - This command is used to remove the configured RADIUS authentication server or the RADIUS
accounting server. If the 'auth' token is used, the previously configured RADIUS authentication
server is removed from the configuration. Similarly, if the 'acct' token is used, the previously
configured RADIUS accounting server is removed from the configuration. The <ipaddr> parameter
must match the IP address of the previously configured RADIUS authentication / accounting server.

Default Setting

None

Command Mode

Global Config

7.8.4.6 radius-sever key

This command is used to configure the shared secret between the RADIUS client and the RADIUS
accounting / authentication server. Depending on whether the 'auth' or 'acct' token is used, the shared
secret will be configured for the RADIUS authentication or RADIUS accounting server. The IP address
provided must match a previously configured server. When this command is executed, the secret will be
prompted. The secret must be an alphanumeric value not exceeding 20 characters.

Syntax

radius-server key {acct | auth} <ipaddr|hostname> [encrypted <password>]

<ipaddr|hostname > - is a IP address or hostname.

<password> is the password in encrypted format.

Advertising