6.1 TACACS+ Configuration Example
6.1.1 Ethernet Routing Switch Configuration
ERS-STACKABLE: Step 1 – Add TACACS+ server, enable TACACS+, and enable TACACS+
accounting
ERS-Stackable(config)# tacacs server host 172.168.100.50 key
Enter key: *****
Confirm key: *****
ERS-Stackable(config)# tacacs authorization enable
ERS-Stackable(config)# tacacs accounting enable
ERS-Stackable(config)# tacacs authorization level all
ERS-STACKABLE: Step 2 – Enable CLI password using TACACS+
ERS-Stackable(config)# cli password switch telnet tacacs
% Warning: SNMP/WEB/Console will be disabled
ERS-Stackable level-15># cli password serial tacacs
% Warning: SNMP/WEB will be disabled
Please note, SNMP and WEB access which can be re-enabled again after initially
enabled TACACS+.
6.1.1.1
Ethernet Routing Switch Verify Operations
Step 1 – Verify user names
ERS-Stackable(config)# show tacacs
Result:
Primary Host:
Secondary Host:
Port:
49
Key:
***************
TACACS+ authorization is
Authorization is enabled on levels :
TACACS+ accounting is
172.168.100.50
0.0.0.0
enabled
0-15
enabled
Avaya Inc. – External Distribution
avaya.com
27