Configuring The Tacacs+ Server; Define The Tacacs+ Server - HP ProCurve 7000dl Series Basic Management And Configuration Manual

Procurve 7000dl series secure router
Hide thumbs Also See for ProCurve 7000dl Series:
Table of Contents

Advertisement

Option
challenge-noecho
deadtime <minutes>
enable-username <name>
key <key>
retry <attempts>
timeout <seconds>
You must enter this command from the global configuration mode context.
Table 2-5 lists all the options and what they do.
Table 2-5.
Global Settings for RADIUS Servers
Meaning
disables echoing of user challenge-entry; users will see the
text of the challenge as they type responses (enabling this
option hides the text as it is being entered)
specifies how long a RADIUS server is considered "dead" if
a timeout occurs; the router will not contact the server again
until after the deadtime expires
specifies a username to be used for enable authentication
specifies the shared key to use with RADIUS servers
specifies how many times the ProCurve Secure Router
should try to contact a RADIUS server before marking it as
"dead"
specifies how long to wait for a RADIUS server to respond
to a request
The following is an example configuration for global RADIUS settings:
ProCurve(config)# radius-server challenge-noecho
ProCurve(config)# radius-server deadtime 10
ProCurve(config)# radius-server timeout 2
ProCurve(config)# radius-server retry 4
ProCurve(config)# radius-server key my secret key

Configuring the TACACS+ Server

In addition to supporting authentication, the ProCurve Secure Router supports
authorization and accounting with TACACS+ servers. If you want to use a
TACACS+ server to authenticate, authorize, or keep track of users who want
to manage the ProCurve Secure Router, you must first define the TACACS+
server.

Define the TACACS+ Server

In order to authenticate, authorize, and track users who try to access the
ProCurve Secure Router, the TACACS+ server must be able to communicate
with the router. (See Figure 2-3.)
Controlling Management Access to the ProCurve Secure Router
Using the AAA Subsystem to Control Management Access
Default Value
on
1 minute
enable-username
$enab15$
none
3
5 seconds
2-35

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Procurve 7102dlProcurve 7103dlJ8752aJ8753a

Table of Contents