試驗(yàn)?zāi)康模旱卿浡酚善鞯臅r(shí)候,需要輸入你自己的用戶名和密碼,通過(guò)radius驗(yàn)證通過(guò)之后,再允許登錄路由器。
配置文件如下,每個(gè)路由器都一樣的配置
R2503>en
Password:
R2503#sh run
Building configuration...
Current configuration:
!
version 12.0
service timestamps debug uptime
service timestamps log uptime
no service password-encryption
!
hostname R2503
!
aaa new-model (開(kāi)啟aaa功能)
aaa authentication login ciscoclub radius (設(shè)置認(rèn)證方式為radius認(rèn)證,ciscoclub為認(rèn)證策略名)
enable secret 5 $1$7Itz$DfIumP6x7ctddLF8QIFtF/
!
ip subnet-zero
!
interface Ethernet0
ip address 192.168.0.203 255.255.255.0
no ip directed-broadcast
!
interface Serial0
no ip address
no ip directed-broadcast
no ip mroute-cache
shutdown
!
interface Serial1
ip address 172.16.20.1 255.255.255.0
no ip directed-broadcast
clockrate 64000
!
interface BRI0
no ip address
no ip directed-broadcast
shutdown
!
ip classless
!
radius-server host 192.168.0.1 (設(shè)置radius的ip地址)
radius-server key ciscoclub (設(shè)置路由器與radius之間的密碼)
!
line con 0
transport input none
line aux 0
line vty 0 4
login authentication ciscoclub (在這里應(yīng)用認(rèn)證策略)
end
R2503#


