Tavve zoneranger User Manual page 130

Table of Contents

Advertisement

<?xml version="1.0" encoding="UTF-8"?>
<trap-definitions>
</trap-definitions>
Configuration
Access Control
Any user interaction with ZoneRanger requires logging in with a user name and password. The
method of authentication and the determination of the valid set of user names and passwords is
configured on the Configure > Access Control page. The Configure > Access Control page is
also used to configure ZoneRanger to proxy TACACS+ and RADIUS requests for managed
devices.
Authentication using TACACS+ and RADIUS
ZoneRanger can proxy TACACS+ and RADIUS requests from its managed devices to a
TACACS+ or RADIUS server for authentication and authorization of user names and
passwords. These requests and responses are proxied through a joined Ranger Gateway.
User authentication is organized through the use of Server Groups. Incoming authentication
requests are sent to the TACACS+ or RADIUS server determined by the node's membership in
one or more server groups. In the case of a node being configured in multiple server groups, the
request will be sent in order to each TACACS+ or RADIUS server until a success or failure
response is received.
The ZoneRanger itself can be configured to either use TACACS+ or RADIUS for
authentication but not both. The ZoneRanger may be configured to communicate directly with
a TACACS+ or RADIUS sever or it can be proxied through a Ranger Gateway.
authentication fails on the ZoneRanger from a central authority, ZoneRanger will attempt to
authenticate the user locally.
Security levels
ZoneRanger has two security(authorization) levels which determine the amount of user access.
Security Level
Admin
Operator
ZoneRanger 5.5 User's Guide
<trap-definition name="tscZRIfDown">
<enterprise-oid>1.3.6.1.4.1.2668.1.1.16</enterprise-oid>
<generic-type>6</generic-type>
<specific-type>51</specific-type>
<format>Interface $1 ($2) down.</format>
<description>The interface was not able to be reached by ZoneRanger.
</description>
</trap-definition>
...
Access
The Admin security level has access to all
ZoneRanger configuration pages
The Operator security level limits access to
viewer pages; the Administration,
Diagnostics, and Configure menus and pages
are hidden.
If the
130

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents