No relevant resource is found in the selected language.

This site uses cookies. By continuing to browse the site you are agreeing to our use of cookies. Read our privacy policy>Search

Reminder

To have a better experience, please upgrade your IE browser.

upgrade

How to authenticate ssh/telnet users via RADIUS?

Publication Date:  2019-01-08 Views:  190 Downloads:  0
Issue Description


We have around 58 MA5603T OLT’s in our networks. We want telnet/ssh authentication to be done via Radius.
Can you please support us in providing correct configuration to authenticate telnet/ssh users via radius?

Currently I’m trying to integrate my LAB OLT to radius.

Device Type             = MA5603T Device

Device Version          = MA5600V800R016C00


Configuration in live network

[aaa]

 <aaa>

aaa

authentication-scheme "default"

authentication-mode radius local

authentication-scheme "opticomm"   

authentication-mode radius local   

#

authorization-scheme "default"

authorization-scheme "opticomm"

#

accounting-scheme "default"

#

domain "default"

radius-server "default"

domain "opticomm"               

authentication-scheme"opticomm"


radius-server "opticomm"        



Solution


The configuration of the server template is missing

huawei(config)#terminal user authentication-mode AAA opticomm root

huawei(config)#radius-server template opticomm

huawei(config)#undo radius-server user-name domain-included

huawei(config-radius-hwtest)#radius-server authentication 10.10.66.66 1812
huawei(config-radius-hwtest)#radius-server authentication 10.10.66.67 1812 secondary  
huawei(config-radius-hwtest)#radius-server accounting 10.10.66.66 1813               
huawei(config-radius-hwtest)#radius-server accounting 10.10.66.67 1813 secondary

 

 

END