Specifying RADIUS Server Priority
You can specify the connection priority when configuring a RADIUS server for 802.1x, MAC authentication, or Web authentication. By default, the priority setting is zero and is not displayed in the running configuration. Once configured, the priority is displayed in the running configuration. You can configure the server priority as a value of 1 through 7, with 7 being the highest priority. When the ICX device attempts to establish a RADIUS host connection, the RADIUS server with the highest configured priority will be tried first, followed by the RADIUS server with the next-highest priority setting if the first RADIUS server cannot be reached.
In general, RUCKUS recommends configuring RADIUS servers with different priorities, rather than configuring the same priority setting on different servers. When the same priority setting is configured on two RADIUS servers, the ICX device may connect to either server but first attempts to connect with the RADIUS server that was configured last.
The following example configures a RADIUS
server host with the highest priority (7) and uses the show radius servers command
to confirm the
configuration.
device# configure terminal device(config)# radius-server host 10.177.17.83 auth-port 1812 acct-port 1813 default key 2 $m1y2k3e4y dot1x mac-auth web-auth priority 7 device(config)# show radius servers --------------------------------------------------------------------------------------------------- Server Type Opens Closes Timeouts Status Priority --------------------------------------------------------------------------------------------------- 10.177.17.83 any 4 3 0 active 7