Aaa Authorization Config-Commands Default - Cisco Nexus 5500 Series Command Reference Manual

Nx-os security command reference
Hide thumbs Also See for Nexus 5500 Series:
Table of Contents

Advertisement

Chapter
A Commands

aaa authorization config-commands default

To configure the default authentication, authorization, and accounting (AAA) authorization methods for
all configuration commands, use the aaa authorization config-commands default command. To revert
to the default, use the no form of this command.
Syntax Description
group
group-list
local
none
Command Default
None
Command Modes
Global configuration mode
Command History
Release
5.2(1)N1(1)
Usage Guidelines
To use this command, you must enable the TACACS+ feature by using the feature tacacs+ command.
The group tacacs+ and group group-list methods refer to a set of previously defined TACACS+ servers.
Use the tacacs-server host command to configure the host servers. Use the aaa group server command
to create a named group of servers. Use the show aaa groups command to display the server groups on
the device.
If you specify more than one server group, the Cisco NX-OS software checks each group in the order
that you specify in the list. The local method or the none method is used only if all the configured server
groups fail to respond and you have configured local or none as the fallback method.
If you specify the group method or local method and it fails, then the authorization can fail. If you
specify the none method alone or after the group method, then the authorization always succeeds.
OL-27883-02
aaa authorization config-commands default [group group-list] [local | none]
no aaa authorization config-commands default [group group-list] [local | none]
(Optional) Specifies to use a server group for authorization.
List of server groups.
The list can include the following:
The name can be a space-separated list of server groups, and a maximum of
127 characters.
(Optional) Specifies to use the local role-based database for authorization.
(Optional) Specifies to use no database for authorization.
Modification
This command was introduced.
tacacs+ for all configured TACACS+ servers.
Any configured TACACS+ server group name.
Cisco Nexus 5500 Series NX-OS Security Command Reference
aaa authorization config-commands default
11

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents