Juniper JUNOSE SOFTWARE 11.2.X - BROADBAND ACCESS CONFIGURATION GUIDE 7-20-2010 Configuration Manual page 359

Software for e series broadband services routers broadband access configuration guide
Table of Contents

Advertisement

tacacs-server key
tacacs-server source-address
tacacs-server timeout
Copyright © 2010, Juniper Networks, Inc.
If a timeout value is specified, it overrides the global timeout value set with the
tacacs-server timeout command for this server only.
You can configure additional hosts by using this command. The designated primary
host is always the first in the search order; the remaining hosts are contacted in the
order in which they were created. If the primary host is deleted, or if you modify the
primary host without specifying the primary keyword, the next host in the search order
becomes the primary host. The search order is maintained when the NAS is reloaded.
Example
host1(config)#tacacs-server host 192.168.1.27 port 10 timeout 3 key your_secret primary
host1(config)#no tacacs-server host 192.168.1.27
Use the no version to delete the host from the list of TACACS+ servers.
See tacacs-server host
Use to set or reset the authentication encryption key value shared by all TACACS+
servers that do not have a server-specific key set up by the tacacs-server host
command.
This key must match the key configured on the TACACS+ process.
Leading spaces are ignored; however, spaces at the end of the key are recognized. If
you use spaces in the key, do not enclose the key in quotation marks.
Example
host1(config)#tacacs-server key &# 889khj
Use the no version to reset a key value shared by all TACACS+ servers.
See tacacs-server key
Use to set or reset an alternative source address to be used for TACACS+ server
communications.
Existing connections are not affected by this command.
Example
host1(config)#tacacs-server source-address 192.168.134.63
Use the no version to remove the address.
See tacacs-server source-address
Use to set the interval in seconds that the server waits for the server host to reply. The
specified interval is shared by all TACACS+ servers that do not have a server-specific
timeout set up by tacacs-server host command.
The timeout interval is between 1 and 300. The default is 5 seconds.
Example
Chapter 9: Configuring TACACS+
321

Advertisement

Table of Contents
loading

This manual is also suitable for:

Junose 11.2

Table of Contents