RE: 3550 "ip radius" command.

From: Brian McGahan (bmcgahan@internetworkexpert.com)
Date: Tue Oct 31 2006 - 12:53:40 ART


        This is a AAA command that is not directly related to the 3550.
The "ip radius source-interface" and "ip tacacs source-interface"
commands tell the network client what source address to use for
radius/tacacs packets sent to the AAA server. Normally the traffic is
sourced from the IP address of the outgoing interface in the routing
table. However when you authenticate to AAA the server typically will
have the network clients' IP addresses that are allowed to authenticate
statically configured. So if you have 10 VLAN interfaces on the switch
you may not want 10 entries in the AAA server that all point to the same
device. Instead you could say "ip radius source-interface Vlan 10" and
the packets will always come from that IP address.

HTH,

Brian McGahan, CCIE #8593 (R&S/SP)
bmcgahan@internetworkexpert.com

Internetwork Expert, Inc.
http://www.InternetworkExpert.com
Toll Free: 877-224-8987 x 705
Outside US: 775-826-4344 x 705
24/7 Support: http://forum.internetworkexpert.com
Live Chat: http://www.internetworkexpert.com/chat/

> -----Original Message-----
> From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf
Of
> Skinner, Stephen
> Sent: Tuesday, October 31, 2006 8:03 AM
> To: ccielab@groupstudy.com
> Subject: 3550 "ip radius" command.
>
> Guys,
>
> I was working with 802.1x on my test switch and I found this command,
>
> " ip radius source-interface "
>
> There is no mention of this command in the CCO under the 3550 section
,
> BUT
> there is mention of it under 12.4 IOS.
>
> There was also no mention of the command under the 802.1x
configuration
> section.
>
> I checked the last two release's .
>
>
> Q
>
> Are there any other commands like this that people know of ?.
>
> i.e. this is expected behaviour or not ?
>
> I would have thought that all commands that relate to the 3550`s would
be
> in
> that 3550 section ? .
>
> TIA
>
> Stephen Skinner
>
>
>
>
>
> The Royal Bank of Scotland plc, Registered in Scotland No. 90312.
> Registered Office: 36 St Andrew Square, Edinburgh EH2 2YB
>
> Authorised and regulated by the Financial Services Authority.
>
> This e-mail message is confidential and for use by the addressee only.
If
> the message is received by anyone other than the addressee, please
return
> the message to the sender by replying to it and then delete the
message
> from your computer. Internet e-mails are not necessarily secure. The
Royal
> Bank of Scotland plc does not accept responsibility for changes made
to
> this message after it was sent.
>
> Whilst all reasonable care has been taken to avoid the transmission of
> viruses, it is the responsibility of the recipient to ensure that the
> onward transmission, opening or use of this message and any
attachments
> will not adversely affect its systems or data. No responsibility is
> accepted by The Royal Bank of Scotland plc in this regard and the
> recipient should carry out such virus and other checks as it considers
> appropriate.
>
>



This archive was generated by hypermail 2.1.4 : Wed Nov 01 2006 - 07:29:07 ART