Operation Manual – AAAH3C S3100-52P Ethernet switch Chapter 2 AAA Configuration2-34I. Network requirementsIn the network environment shown in Figure 2-1, you are required to configure theswitch so that the Telnet users logging into the switch are authenticated by the RADIUSserver.z A RADIUS authentication server with IP address 10.110.91.164 is connected tothe switch.z On the switch, set the shared key it uses to exchange messages with theauthentication RADIUS server to aabbcc.z A CAMS server is used as the RADIUS server. You can select extended as theserver-type in a RADIUS scheme.z On the RADIUS server, set the shared key it uses to exchange messages with theswitch to aabbcc, set the authentication port number, and add Telnet usernamesand login passwords.The Telnet usernames added to the RADIUS server must be in the format ofuserid@isp-name if you have configured the switch to include domain names in theusernames to be sent to the RADIUS server in the RADIUS scheme.II. Network diagramInternetTelnet userRADIUS server10.110.91.164/16Figure 2-1 Remote RADIUS authentication of Telnet usersIII. Configuration procedure# Enter system view. system-view# Adopt AAA authentication for Telnet users.[Sysname] user-interface vty 0 4[Sysname-ui-vty0-4] authentication-mode scheme[Sysname-ui-vty0-4] quit# Configure an ISP domain.[Sysname] domain cams[Sysname-isp-cams] access-limit enable 10