Aaa operations for radius – Brocade BigIron RX Series Configuration Guide User Manual

Page 171

Advertising
background image

BigIron RX Series Configuration Guide

93

53-1002484-04

Configuring RADIUS security

3

AAA operations for RADIUS

The following table lists the sequence of authentication, authorization, and accounting operations
that take place when a user gains access to a BigIron RX that has RADIUS security configured.

User action

Applicable AAA operations

User attempts to gain access to the
Privileged EXEC and CONFIG levels of the
CLI

Enable authentication:
aaa authentication enable default

<

method-list>

System accounting start:
aaa accounting system default start-stop

<

method-list>

User logs in using Telnet/SSH

Login authentication:
aaa authentication login default

<

method-list>

EXEC accounting Start:
aaa accounting exec default start-stop

<

method-list>

System accounting Start:
aaa accounting system default start-stop

<

method-list>

User logs into the Web management
interface

Web authentication:
aaa authentication web-server default

<

method-list>

User logs out of Telnet/SSH session

Command authorization for logout command:
aaa authorization commands

<

privilege-level> default

<

method-list>

Command accounting:
aaa accounting commands

<

privilege-level> default start-stop

<

method-list>

EXEC accounting stop:
aaa accounting exec default start-stop

<

method-list>

User enters system commands
(for example, reload, boot system)

Command authorization:
aaa authorization commands

<

privilege-level> default

<

method-list>

Command accounting:
aaa accounting commands

<

privilege-level> default start-stop

<

method-list>

System accounting stop:
aaa accounting system default start-stop

<

method-list>

User enters the command:
[no] aaa accounting system default
start-stop

<

method-list>

Command authorization:
aaa authorization commands

<

privilege-level> default

<

method-list>

Command accounting:
aaa accounting commands

<

privilege-level> default start-stop

<

method-list>

System accounting start:
aaa accounting system default start-stop

<

method-list>

User enters other commands

Command authorization:
aaa authorization commands

<

privilege-level> default

<

method-list>

Command accounting:
aaa accounting commands

<

privilege-level> default start-stop

<

method-list>

Advertising