Configuring the RADIUS session-control feature

About RADIUS session-control

Enable this feature for the RADIUS server to dynamically change the user authorization information or forcibly disconnect users by using session-control packets. This task enables the device to receive RADIUS session-control packets on UDP port 1812.

To verify the session-control packets sent from a RADIUS server, specify the RADIUS server as a session-control client to the device.

Restrictions and guidelines

The RADIUS session-control feature can only work with RADIUS servers running on IMC. The session-control client configuration takes effect only when the session-control feature is enabled.

Procedure

  1. Enter system view.

    system-view

  2. Enable the session-control feature.

    radius session-control enable

    By default, the session-control feature is disabled.

  3. Specify a session-control client.

    radius session-control client { ip ipv4-address | ipv6 ipv6-address } [ key { cipher | simple } string | vpn-instance vpn-instance-name ] *

    By default, no session-control clients are specified.