Tacacs+ Server Configuration - Using Tac_Plus - Avaya ERS 1600 Technical Configuration Manual

Authentication, authorization and accounting (aaa) for ers and es
Hide thumbs Also See for ERS 1600:
Table of Contents

Advertisement

3.4 TACACS+ Server Configuration – Using tac_plus
The following TACACS+ Server configuration is based on tac_plus, www.networkforums.net. Once
installed on a Linux host, there is a unique configuration file to edit as shown below.
3.4.1 /etc/tacacs/tac_plus.cfg
This file contains all configuration parameters for TACACS+.
# Tacacs+ configuration file
key = Dda
# Accounting records log file
accounting file = /var/log/tac_acc.log
#All services are alowed..
user = DEFAULT {
service = ppp protocol = ip {}
}
user = ro {
member = level1
login = cleartext readonly
expires = "Dec 31 2008"
}
user = bsrw {
default service = permit
service = exec {
priv-lvl = 5
}
login = cleartext bsrw
}
user = rwa {
default service = permit
service = exec {
priv-lvl = 6
}
login = cleartext rwa
}
user = $enab6$ {
member = level6
login = cleartext rwa
}
group = level1 {
cmd = enable { permit .* }
cmd = show { permit .* }
Authentication, Authorization and Accounting (AAA) for ERS and ES
November 2010
Technical Configuration Guide
avaya.com
45

Advertisement

Table of Contents
loading

Table of Contents