Configuring Tacacs+ Accounting; Configuring Tacacs+ Authorization; Checking Configurations - Raisecom ISCOM2600G-HI (A) Series Configuration Manual

Table of Contents

Advertisement

Raisecom
ISCOM2600G-HI (A) Series Configuration Guide
Step
5
6

10.5.6 Configuring TACACS+ accounting

Configure TACACS+ accounting for the ISCOM2600G-HI series switch as below.
Step
1
2
3
4
5

10.5.7 Configuring TACACS+ authorization

Configure TACACS+ authorization for the ISCOM2600G-HI series switch as below.
Step
1

10.5.8 Checking configurations

Use the following commands to check configuration results.
Command
Raisecom#enable login
{ local-tacacs | tacacs-
local [ server-no-
response ] | tacacs-user }
Raisecom#radius response-
time
timeout
Command
Raisecom#aaa accounting
login enable
Raisecom#tacacs-server
ipv4-address
[ backup ] {
| ipv6-address
} [ acct-
port-id
port
]
Raisecom#tacacs-server key
string
Raisecom#tacacs [ backup ]
accounting-server encrypt-
string
key
Raisecom#aaa accounting
fail { offline | online }
Raisecom#aaa accounting
period
update
Command
Raisecom#aaa command
authorize{ enable
Raisecom Proprietary and Confidential
Copyright © Raisecom Technology Co., Ltd.
Configure the authentication mode for a user
to enter privileged EXEC mode to
TACACS+.
Configure the timeout of response by the
TACACS+ authentication server.
Enable TACACS+ accounting.
Assign the IP address and UDP port ID for the
TACACS+ accounting server. Configure the
backup parameter to assign the backup
TACACS+ accounting server.
Configure the shared plaintext or ciphertext
key to communicate with the TACACS+
accounting server.
Configure the processing policy for
accounting failure.
Configure the period for sending Account-
Update packets. If it is configured to 0, no
Account-Update packet will be sent.
Enable/Disable TACACS+ command
|
disable }
authorization.
10 Security
Description
Description
Description
424

Advertisement

Table of Contents
loading

Table of Contents