Hwtacacs Authentication And Authorization Of Telnet Users - 3Com 5500-EI PWR Install Manual

Hide thumbs Also See for 5500-EI PWR:
Table of Contents

Advertisement

# Configure an authentication scheme for the default "system" domain.
[Sysname] domain system
[Sysname-isp-system] scheme local
A Telnet user logging into the switch with the name telnet@system belongs to the "system" domain and
will be authenticated according to the configuration of the "system" domain.
Method 2: using local RADIUS server
This method is similar to the remote authentication method described in
Authentication of Telnet/SSH
Change the server IP address, and the UDP port number of the authentication server to 127.0.0.1,
and 1645 respectively in the configuration step "Configure a RADIUS scheme" in
Authentication of Telnet/SSH
Enable the local RADIUS server function, set the IP address and shared key for the network
access server to 127.0.0.1 and aabbcc, respectively.
Configure local users.

HWTACACS Authentication and Authorization of Telnet Users

Network requirements
You are required to configure the switch so that the Telnet users logging into the switch are
authenticated and authorized by the TACACS server.
A TACACS server with IP address 10.110.91.164 is connected to the switch. This server will be used as
the authentication and authorization server. On the switch, set both authentication and authorization
shared keys that are used to exchange messages with the TACACS server to aabbcc. Configure the
switch to strip domain names off usernames before sending usernames to the TACACS server.
Configure the shared key to aabbcc on the TACACS server for exchanging messages with the switch.
Network diagram
Figure 2-3 Remote HWTACACS authentication and authorization of Telnet users
Telnet user
Configuration procedure
# Add a Telnet user.
(Omitted here)
# Configure a HWTACACS scheme.
<Sysname> system-view
[Sysname] hwtacacs scheme hwtac
Users. However, you need to:
Users.
Authentication server
10.110.91.164/16
Internet
2-29
Remote RADIUS
Remote RADIUS

Advertisement

Table of Contents
loading

This manual is also suitable for:

5500-ei series

Table of Contents