Distributing Aaa Server Configuration; Enabling The Radius Server Distribution - Cisco DS-X9530-SF1-K9 - Supervisor-1 Module - Control Processor Configuration Manual

Mds 9000 family
Table of Contents

Advertisement

Chapter 28
Configuring RADIUS and TACACS+
S e n d d o c u m e n t a t i o n c o m m e n t s t o m d s f e e d b a c k - d o c @ c i s c o . c o m .
To verify the configured server group order, use the show tacacs-server groups command:
switch# show tacacs-server groups
total number of groups:2
following TACACS+ server groups are configured:

Distributing AAA Server Configuration

Configuration for RADIUS and TACACS+ AAA on a MDS switch can be distributed using the Cisco
Fabric Services (CFS). The distribution is disabled by default (see
Infrastructure").
After enabling the distribution, the
server configuration commands entered thereafter are stored in a temporary database and applied to all
switches in the fabric (including the originating one) when you explicitly commit the database. The
various server and global parameters are distributed, except the server and global keys. These keys are
unique secrets to a switch and should not be shared with other switches.
Server group configurations are not distributed.
Note

Enabling the RADIUS Server Distribution

Only switches where distribution is enabled can participate in the distribution activity.
To enable RADIUS server distribution, follow these steps:
Command
Step 1
switch# config t
Step 2
switch(config)# radius distribute
switch(config)# no radius
distribute
To enable TACACS+ server distribution, follow these steps:
Command
Step 1
switch# config t
Step 2
switch(config)# tacacs+ distribute
switch(config)# no tacacs+
distribute
OL-8222-01, Cisco MDS SAN-OS Release 3.x
group TacServer:
server 171.71.58.91 on port 2
group TacacsServer1:
server ServerA on port 49
server ServerB on port 49:
f
irst server or global configuration starts an implicit session. All
Purpose
Enters configuration mode.
Enables RADIUS configuration distribution in this switch.
Disables RADIUS configuration distribution in this switch
(default).
Purpose
Enters configuration mode.
Enables TACACS+ configuration distribution in this switch.
Disables TACACS+ configuration distribution in this switch.
(default)
Cisco MDS 9000 Family CLI Configuration Guide
Distributing AAA Server Configuration
Chapter 5, "Using the CFS
28-15

Advertisement

Table of Contents
loading

Table of Contents