Configuring Remote Logon Authentication Servers; Figure 135: Configuring The Authentication Sequence - Edge-Core ES3510MA-DC Management Manual

Layer 2 switch with 8 10/100base-tx rj-45 ports, and 2 gigabit combination ports rj-45/sfp
Table of Contents

Advertisement

| Security Measures
C
14
HAPTER
AAA Authorization and Accounting
C
R
ONFIGURING
EMOTE
L
OGON
A
UTHENTICATION
S
ERVERS
[authentication sequence] – User authentication is performed by up
to three authentication methods in the indicated sequence.
W
I
EB
NTERFACE
To configure the method(s) of controlling management access:
Click Security, AAA, System Authentication.
1.
Specify the authentication sequence (i.e., one to three methods).
2.
Click Apply.
3.

Figure 135: Configuring the Authentication Sequence

Use the Security > AAA > Server page to configure the message exchange
parameters for RADIUS or TACACS+ remote access authentication servers.
Remote Authentication Dial-in User Service (RADIUS) and Terminal Access
Controller Access Control System Plus (TACACS+) are logon authentication
protocols that use software running on a central server to control access to
RADIUS-aware or TACACS-aware devices on the network. An
authentication server contains a database of multiple user name/password
pairs with associated privilege levels for each user that requires
management access to the switch.
Figure 136: Authentication Server Operation
Web
Telnet
RADIUS/
TACACS+
server
RADIUS uses UDP while TACACS+ uses TCP. UDP only offers best effort
delivery, while TCP offers a connection-oriented transport. Also, note that
RADIUS encrypts only the password in the access-request packet from the
client to the server, while TACACS+ encrypts the entire body of the packet.
– 270 –
console
1. Client attempts management access.
2. Switch contacts authentication server.
3. Authentication server challenges client.
4. Client responds with proper password or key.
5. Authentication server approves access.
6. Switch grants management access.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents