Using The Cli To Configure Tacacs - Cisco 2100 Series Configuration Manual

Wireless lan controller
Hide thumbs Also See for 2100 Series:
Table of Contents

Advertisement

Chapter 5
Configuring Security Solutions
In the Server Timeout field, enter the number of seconds between retransmissions. The valid range is 5
Step 10
to 30 seconds, and the default value is 5 seconds.
Note
Click Apply to commit your changes.
Step 11
Click Save Configuration to save your changes.
Step 12
Repeat the previous steps if you want to configure any additional services on the same server or any
Step 13
additional TACACS+ servers.
To specify the order of authentication when multiple databases are configured, click Security > Priority
Step 14
Order > Management User. The Priority Order > Management User page appears (see
Figure 5-11
For Authentication Priority, choose either Radius or TACACS+ to specify which server has priority over
Step 15
the other when the controller attempts to authenticate management users. By default, the local database
is always queried first. If the username is not found, the controller switches to the TACACS+ server if
configured for TACACS+ or to the RADIUS server if configured for Radius. The default setting is local
and then Radius.
Click Apply to commit your changes.
Step 16
Click Save Configuration to save your changes.
Step 17

Using the CLI to Configure TACACS+

Use the commands in this section to configure TACACS+ through the controller CLI.
Note
Refer to the
default values of the parameters used in the CLI commands.
1.
OL-17037-01
Cisco recommends that you increase the timeout value if you experience repeated
reauthentication attempts or the controller falls back to the backup server when the primary
server is active and reachable.
Priority Order > Management User Page
"Using the GUI to Configure TACACS+" section on page 5-23
Use these commands to configure a TACACS+ authentication server:
config tacacs auth add index server_ip_address port# {ascii | hex} shared_secret—Adds a
TACACS+ authentication server.
config tacacs auth delete index—Deletes a previously added TACACS+ authentication server.
Cisco Wireless LAN Controller Configuration Guide
Configuring TACACS+
Figure
5-11).
for the valid ranges and
5-25

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

4400 series

Table of Contents