Raisecom
ISCOM2600G-HI (A) Series Configuration Guide
10.5.3 Default configurations of TACACS+
Default configurations of TACACS+ are as below.
TACACS+ function
Login mode
IP address of the TACACS+ authentication server
IP address of the TACACS+ accounting server
Shared key for communicating with the TACACS+ accounting
server
Processing policy for accounting failure
Period for sending Account-Update packet
10.5.4 Configuring TACACS+ authorization
Configure TACACS+ authorization for the ISCOM2600G-HI series switch as below.
Step
1
10.5.5 Configuring TACACS+ authentication
Configure TACACS+ authentication for the ISCOM2600G-HI series switch as below.
Step
1
2
3
4
Function
Command
Raisecom#aaa command authorize
{ enable | disable }
Command
Raisecom#tacacs-server
ip-address
[ backup ]
port-id
[ auth-port
Raisecom#tacacs-server
time
quiet
Raisecom#tacacs-server
string
[ backup ] key
Raisecom#tacacs-server
[ backup ] encrypt-key
string
Raisecom#user login
{ local-tacacs | tacacs-
local [ server-no-
response ] | tacacs-user }
Raisecom Proprietary and Confidential
Copyright © Raisecom Technology Co., Ltd.
Enable TACACS+ command
authorization.
Assign the IP address and port number for the
TACACS+ authentication server. Configure
]
the backup parameter to assign the backup
TACACS+ authentication server.
Configure the time for the master TACACS+
authentication server to restore to the
activation status.
Configure the shared plaintext or ciphertext
key for TACACS+ authentication. Configure
the backup parameter to assign the backup
TACACS+ authentication server.
Configure the login authentication mode to
TACACS+.
10 Security
Default value
Disable
local-user
0.0.0.0, shown as "--"
0.0.0.0, shown as "--"
N/A
Online
0
Description
Description
423