Cisco Nexus 5000 Series Switch CLI Software Configuration Guide (OL-16597-01, July 2009)

AAA Service Configuration Options 229
Authentication and Authorization Process for User Login 230
Prerequisites for Remote AAA 231
Information about AAA Guidelines and Limitations 232
Configuring AAA 232
Configuring Console Login Authentication Methods 232
Configuring Default Login Authentication Methods 233
Enabling Login Authentication Failure Messages 234
Enabling MSCHAP Authentication 235
Configuring AAA Accounting Default Methods 236
Using AAA Server VSAs 237
About VSAs 237
VSA Format 237
Specifying Switch User Roles and SMNPv3 Parameters on AAA Servers 238
Displaying and Clearing the Local AAA Accounting Log 238
Verifying AAA Configuration 238
Example AAA Configuration 239
Default AAA Settings 239
Configuring RADIUS 241
Configuring RADIUS 241
Information About RADIUS 241
RADIUS Network Environments 241
RADIUS Operation 242
RADIUS Server Monitoring 242
Vendor-Specific Attributes 243
Prerequisites for RADIUS 244
Guidelines and Limitations for RADIUS 244
Configuring RADIUS Servers 244
Configuring RADIUS Server Hosts 245
Configuring RADIUS Global Preshared Keys 245
Configuring RADIUS Server Preshared Keys 246
Configuring RADIUS Server Groups 247
Allowing Users to Specify a RADIUS Server at Login 248
Configuring the Global RADIUS Transmission Retry Count and Timeout Interval 248
Cisco Nexus 5000 Series Switch CLI Software Configuration Guide
OL-16597-01 xv
Contents