#on switch
#configure radius-server
radius-server host <ip or dns>
radius-server key plaintext <shared radius secret>
aaa authentication login default group local radius
aaa accounting all-mgmt default start-stop group radius
aaa authentication allow-fail-through

#on clearpass you need a generic Radius rule and the following profile's:
profile: <customer>_Radius_Switch_Operator + Admin
>> Operator: NAS-Prompt-User (7)
>> Administrator: Administrative-User(6)


#further reading > see hpe security guide, for example search for:
arubaos cx 10.13 security guide

computer2know :: thank you for your visit :: have a nice day :: © 2024