No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search


To have a better experience, please upgrade your IE browser.


CLI-based Configuration Guide - Security

AR100, AR120, AR150, AR160, AR200, AR1200, AR2200, AR3200, and AR3600 V200R010

This document provides the basic concepts, configuration procedures, and configuration examples in different application scenarios of the network management feature supported by the device.
Rate and give feedback:
Huawei uses machine translation combined with human proofreading to translate this document to different languages in order to help you better understand the content of this document. Note: Even the most advanced machine translation cannot match the quality of professional translators. Huawei shall not bear any responsibility for translation accuracy and it is recommended that you refer to the English document (a link for which has been provided).
Licensing Requirements and Limitations for AAA

Licensing Requirements and Limitations for AAA

Involved Network Elements

Table 1-30  Components involved in AAA networking


Product Model


AAA server

Huawei servers or third-party AAA servers Performs authentication, accounting, and authorization on users.

Licensing Requirements

AAA is a basic feature of a device and is not under License control.

Feature Limitations

  • To prevent data transmission risks between the device and the RADIUS or HWTACACS server, you are advised to deploy the device and RADIUS or HWTACACS server in a security domain.

  • If non-authentication is configured using the authentication-mode command, users can pass the authentication using any user name or password. To protect the device and improve network security, you are advised to enable authentication to allow only authenticated users to access the device or network.
  • By default, the accounting scheme default is bound to the global default common domain default and global default management domain default_admin. Modifying the accounting scheme default affects configurations of the two domains. Exercise caution when modifying the accounting scheme to prevent user accounting failures.
  • RADIUS authentication does not take effect for L2TP access users.
Updated: 2019-08-07

Document ID: EDOC1100034077

Views: 137563

Downloads: 248

Average rating:
This Document Applies to these Products
Related Documents
Related Version
Previous Next