HP 438031-B21 - 1:10Gb Ethernet BL-c Switch Reference Manual page 148

Hp 1:10gb ethernet bl-c switch for c-class bladesystem browser-based interface reference guide
Hide thumbs Also See for 438031-B21 - 1:10Gb Ethernet BL-c Switch:
Table of Contents

Advertisement

TACACS+ offers the following advantages over RADIUS as the authentication device:
TACACS+ is TCP-based, so it facilitates connection-oriented traffic.
It supports full-packet encryption, as opposed to password-only in authentication requests.
It supports decoupled authentication, authorization, and accounting.
The following table describes Switch TACACS+ Configuration controls:
Switch TACACS+ Configuration controls
Table 100
Control
Primary Tacacs+ IP Address
Secondary Tacacs+ IP Address
Tacacs+ port (1-65000)
Tacacs+ timeout (4-15)
Tacacs+ retries (1-3)
Enable/Disable Tacacs+ Server
Enable/Disable Tacacs+ Backdoor for
telnet/ssh/http/https
Enable/Disable Secure Tacacs+ Backdoor for
telnet
Enable/Disable Tacacs+ new privilege level
mapping
Tacacs+ Secret
Secondary Tacacs+ Server Secret
Tacacs+ User Mappings Configuration
Description
Configures the primary TACACS+ server address.
Configures the secondary TACACS+ server address.
Configures the number of the TCP port to be configured,
between 1 and 65000. The default is 49.
Configures the amount of time, in seconds, before a TACACS+
server authentication attempt is considered to have failed. The
default timeout is 5 seconds.
Configures the number of failed authentication requests before
switching to a different TACACS+ server. The default retry count is
3 requests.
Enables or disables the TACACS+ server.
Enables or disables the TACACS+ backdoor for
telnet/SSH/HTTP/HTTPS.
Enables or disables the TACACS+ back door using secure
password for telnet/SSH/HTTP/HTTPS.
Enables or disables TACACS+ privilege-level mapping.
The default value is disabled.
Configures the shared secret (up to 32 characters) between the
switch and the TACACS+ server.
Configures the secondary shared secret (up to 32 characters)
between the switch and the TACACS+ server.
Maps a TACACS+ privilege level to a HP 1:10GbE switch user
level, as follows:
Remote Privilege—Enter a TACACS+ privilege level (0-15)
Local Privilege—Select the corresponding switch user level.
Configuring the switch
148

Advertisement

Table of Contents
loading

This manual is also suitable for:

1:10gbe

Table of Contents