Authentication Example - Cisco WS-C2950SX-48-SI Configuration Manual

Catalyst 4500 series switches
Hide thumbs Also See for WS-C2950SX-48-SI:
Table of Contents

Advertisement

Authentication Example

This example shows how to clear all credentials from the switch:
Console> (enable) clear kerberos creds
Console> (enable)
Authentication Example
Figure 30-3
authentication is enabled and local authentication is disabled for both login and enable access to the
switch for all Telnet connections. When Workstation A attempts to connect to the switch, the user is
challenged for a TACACS+ username and password.
Only local authentication is enabled for both login and enable access on the console port. Any user with
access to the directly connected terminal can access the switch using the login and enable passwords.
Figure 30-3 Example of a TACACS+ Network Topology
TACACS+
172.20.52.10
Workstation A
This example shows how to configure the switch so that TACACS+ authentication is enabled for Telnet
connections and local authentication is enabled for console connections. In addition, a TACACS+
encryption key is specified.
Console> (enable) show tacacs
Tacacs key:
Tacacs login attempts: 3
Tacacs timeout: 5 seconds
Tacacs direct request: disabled
Tacacs-Server
----------------------------------------
Console> (enable) set tacacs server 172.20.52.10
172.20.52.10 added to TACACS server table as primary server.
Console> (enable) set tacacs key tintin_et_milou
The tacacs key has been set to tintin_et_milou.
Console> (enable) set authentication login tacacs enable telnet
tacacs login authentication set to enable for telnet session.
Console> (enable) set authentication enable tacacs enable telnet
tacacs enable authentication set to enable for telnet session.
Console> (enable) set authentication login local disable telnet
local login authentication set to disable for telnet session.
Catalyst 4500 Series, Catalyst 2948G, Catalyst 2980G Switches Software Configuration Guide
30-40
shows a simple network topology using TACACS+. In this example, TACACS+
server
Switch
Console port
connection
Terminal
Status
-------
Chapter 30
Configuring Switch Access Using AAA
Release 8.1
78-15486-01

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents