Chapter 23 Authentication & Accounting
GS-2750 User’s Guide
188
Login
These fields specify which database the Switch should use (first, second and third)
to authenticate administrator accounts (users for Switch management).
Configure the local user accounts in the
Access Control > Logins
screen. The
and RADIUS are external servers. Before you specify the priority, make
sure you have set up the corresponding database correctly first.
You can specify up to three methods for the Switch to authenticate administrator
accounts. The Switch checks the methods in the order you configure them (first
Method 1
, then
Method 2
and finally
Method 3
). You must configure the settings in
the
Method 1
field. If you want the Switch to check other sources for administrator
accounts, specify them in
Method 2
and
Method 3
fields.
Select
local
to have the Switch check the administrator accounts configured in the
Access Control > Logins
screen.
Select
radius
to have the Switch authenticate the administrator accounts through a
RADIUS server.
Select
to have the Switch authenticate the administrator accounts through
a server.
Accounting
Use this section to configure accounting settings on the Switch.
Update Period
This is the amount of time in minutes before the Switch sends an update to the
accounting server. This is only valid if you select the
start-stop
option for the
Exec
or
Dot1x
entries.
Type
The Switch supports the following types of events to be sent to the accounting
server(s):
•
System
- Configure the Switch to send information when the following system
events occur: system boots up, system shuts down, system accounting is
enabled, system accounting is disabled
•
Exec
- Configure the Switch to send information when an administrator logs in
and logs out via the console port, telnet or SSH.
•
Dot1x
- Configure the Switch to send information when an IEEE 802.1x client
begins a session (authenticates via the Switch), ends a session as well as
interim updates of a session.
•
Commands
- Configure the Switch to send information when commands of
specified privilege level and higher are executed on the Switch.
Active
Select this to activate accounting for a specified event types.
Broadcast
Select this to have the Switch send accounting information to all configured
accounting servers at the same time.
If you don’t select this and you have two accounting servers set up, then the Switch
sends information to the first accounting server and if it doesn’t get a response from
the accounting server then it tries the second accounting server.
Mode
The Switch supports two modes of recording login events. Select:
•
start-stop
- to have the Switch send information to the accounting server when
a user begins a session, during a user’s session (if it lasts past the
Update
Period
), and when a user ends a session.
•
stop-only
- to have the Switch send information to the accounting server only
when a user ends a session.
Method
Select whether you want to use RADIUS or for accounting of specific
types of events.
is the only method for recording
Commands
type of event.
Privilege
This field is only configurable for
Commands
type of event. Select the threshold
command privilege level for which the Switch should send accounting information.
The Switch will send accounting information when commands at the level you
specify and higher are executed on the Switch.
Table 63
Advanced Application > Auth and Acct > Auth and Acct Setup (continued)
LABEL
DESCRIPTION
Summary of Contents for GS-2750
Page 2: ......
Page 7: ...Safety Warnings GS 2750 User s Guide 7 This product is recyclable Dispose of it properly ...
Page 8: ...Safety Warnings GS 2750 User s Guide 8 ...
Page 26: ...List of Figures GS 2750 User s Guide 26 ...
Page 32: ...32 ...
Page 40: ...Chapter 2 Hardware Installation and Connection GS 2750 User s Guide 40 ...
Page 48: ...48 ...
Page 58: ...Chapter 4 The Web Configurator GS 2750 User s Guide 58 ...
Page 64: ...Chapter 5 Initial Setup Example GS 2750 User s Guide 64 ...
Page 70: ...Chapter 6 System Status and Port Statistics GS 2750 User s Guide 70 ...
Page 82: ...Chapter 7 Basic Setting GS 2750 User s Guide 82 ...
Page 84: ...84 ...
Page 120: ...Chapter 11 Spanning Tree Protocol GS 2750 User s Guide 120 ...
Page 134: ...Chapter 15 Link Aggregation GS 2750 User s Guide 134 ...
Page 144: ...Chapter 17 Port Security GS 2750 User s Guide 144 ...
Page 155: ...Chapter 19 Policy Rule GS 2750 User s Guide 155 Figure 73 Policy Example example ...
Page 156: ...Chapter 19 Policy Rule GS 2750 User s Guide 156 ...
Page 160: ...Chapter 20 Queuing Method GS 2750 User s Guide 160 ...
Page 166: ...Chapter 21 VLAN Stacking GS 2750 User s Guide 166 ...
Page 194: ...Chapter 23 Authentication Accounting GS 2750 User s Guide 194 ...
Page 220: ...220 ...
Page 232: ...Chapter 28 Differentiated Services GS 2750 User s Guide 232 ...
Page 242: ...Chapter 29 DHCP GS 2750 User s Guide 242 ...
Page 252: ...Chapter 30 VRRP GS 2750 User s Guide 252 ...
Page 254: ...254 ...
Page 278: ...Chapter 32 Access Control GS 2750 User s Guide 278 ...
Page 280: ...Chapter 33 Diagnostic GS 2750 User s Guide 280 ...
Page 284: ...Chapter 34 Syslog GS 2750 User s Guide 284 ...
Page 298: ...Chapter 39 Routing Table GS 2750 User s Guide 298 ...
Page 301: ...301 PART VI Product Specifications Product Specifications 303 ...
Page 302: ...302 ...
Page 310: ...310 ...
Page 322: ...Appendix B Legal Information GS 2750 User s Guide 322 ...
Page 328: ...Appendix C Customer Support GS 2750 User s Guide 328 ...