Skip to main content
  • Place orders quickly and easily
  • View orders and track your shipping status
  • Create and access a list of your products
  • Manage your Dell EMC sites, products, and product-level contacts using Company Administration.

Dell EMC Configuration Guide for the S4048T–ON System 9.14.2.4

PDF

Disconnecting administrative users logged in through RADIUS

Dell EMC Networking OS enables you to configure disconnect messages (DMs) to disconnect RADIUS administrative users who are logged in through an AAA interface.

Before disconnecting an administrative user using the disconnect messages, ensure that the following prerequisites are satisfied:
  • Shared key is configured in NAS for DAC.
  • NAS server listens on the Management IP UDP port 3799 (default) or the port configured through CLI.
  • AAA session for the user is active.
NAS uses the user-name or both the user-name as well as the NAS-Port attribute to identify the AAA user session. NAS disconnects all sessions related to the user, if the user-name is provided without NAS-port.
  1. Enter the following command to configure the dynamic authorization feature:
    radius dynamic-auth
  2. Enter the following command to terminate the 802.1x user session:
    disconnect-user
    NAS disconnects the administrative users who are connected through an AAA interface.
Dell(conf#)radius dynamic-auth
Dell(conf-dynamic-auth#)disconnect-user
NAS takes the following actions:
  • validates the DM request and the session identification attributes.
  • sends a DM-Nak with an error-cause of 402 (missing attribute), if the DM request does not contain the User-Name.
  • sends a DM-Ack, if it is able to successfully disconnect the admin user.
  • sends a DM-Nak with an error-cause value of 506 (resource unavailable), if it is not able to disconnect the admin user.
  • sends a DM-Nak with an error-cause value of 501 (administratively prohibited), if disconnect-user feature is not enabled in NAS.

Rate this content

Accurate
Useful
Easy to understand
Was this article helpful?
0/3000 characters
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please provide ratings (1-5 stars).
  Please select whether the article was helpful or not.
  Comments cannot contain these special characters: <>()\