Enabling Tacacs+ Globally; Changing Tacacs+ User Levels - Avaya VSP 4000 Technical Configuration Manual

Virtual services platform, management access security
Table of Contents

Advertisement

5.1 Enabling TACACS+ globally

Enabling TACACS+ globally
VSPswitch(config):1:1#tacacs protocol enable
Adding a TACACS+ server
VSPswitch(config):1:1#tacacs server <host|secondary-host> <ip address>
VSPswitch(config):1:1#tacacs server <host|secondary-host> <ip address> key <word, 0-
128>
VSPswitch:1(config)#tacacs server <host|secondary-host> <ip address> single-connection
VSPswitch:1(config)#tacacs server <host|secondary-host> <ip address> port <1-65535>
VSPswitch:1(config)#tacacs server <host|secondary-host> <ip address> timeout <10-30>
VSPswitch:1(config)#tacacs server <host|secondary-host> <ip address> source <ip
address> source-ip-interface enable
The single connection parameter maintains a constant connection between the switch and the
TACACS+ daemon that must also support this mode. If you do not configure single connenction,
the switch uses the default connection type which is per-session or multi-connection mode.
Enabling TACACS+ authentication
VSPswitch:1(config)#tacacs authentication <all|cli|web>
Enabling TACACS+ authorization of level
VSPswitch:1(config)#tacacs authorization level <1-6|all|none>
Enabling TACACS+ accounting
VSPswitch:1(config)#tacacs accounting <disable|enable> cli
To delete or default a setting
VSPswitch:1(config)#no tacacs server <host|secondary-host>
VSPswitch:1(config)#no tacacs server <host|secondary-host> <option>
VSPswitch:1(config)#default tacacs server <host|secondary-host> <option>

5.2 Changing TACACS+ user levels

Users can also change their privilege levels when in configuration mode by issuing the following
command:
VSPswitch:1(config)#tacacs switch level <1-6,15>
If you do change access levels, the switch will send out an authentication request using a user-
id of user-id of $enab<x>$ will be used where x is in reference to the privilege level. Hence, you
will need to add a user name on your TACACS+ server using this naming convention
March 2015
Avaya Inc. – External Distribution
avaya.com
58

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Vsp 9000Vsp 8000

Table of Contents