Secondary Authentication; Secondary Authorization - H3C S3100 Series Command Manual

Hide thumbs Also See for S3100 Series:
Table of Contents

Advertisement

secondary authentication

Syntax
secondary authentication ip-address [ port ]
undo secondary authentication
View
HWTACACS scheme view
Parameters
ip-address: IP address of the secondary authentication server to be used, a valid unicast address in
dotted decimal notation.
port: Port number of the secondary authentication server, ranging from 1 to 65535.
Description
Use the secondary authentication command to set the IP address and port number of the secondary
HWTACACS authentication server to be used by the current scheme.
Use the undo secondary authentication command to restore the default IP address and port number
of the secondary HWTACACS authentication server, which are 0.0.0.0 and 49 respectively.
Note that:
You are not allowed to set the same IP address for both primary and secondary authentication
servers. If you do this, your setting will fail.
If you re-execute the command, the new setting overwrites the old one.
You can remove an authentication server setting only when there is no active TCP connection that
is sending authentication messages to the server.
Related commands: display hwtacacs.
Examples
# Set the IP address and UDP port number of the secondary authentication server for HWTACACS
scheme hwt1 to 10.163.155.13 and 49 respectively.
<Sysname> system-view
System View: return to User View with Ctrl+Z.
[Sysname] hwtacacs scheme hwt1
[Sysname-hwtacacs-hwt1] secondary authentication 10.163.155.13 49

secondary authorization

Syntax
secondary authorization ip-address [ port ]
undo secondary authorization
View
HWTACACS scheme view
1-76

Advertisement

Table of Contents
loading

Table of Contents