Configuring Tacacs+ Authentication - Cisco WS-C2948G-GE-TX Configuration Manual

Catalyst 4500 series switch
Table of Contents

Advertisement

Chapter 30
Configuring Switch Access Using AAA
Enable Authentication: Console Session
---------------------- ----------------- ----------------
tacacs
radius
kerberos
local
attempt limit
lockout timeout (sec)
* Local User Authentication disabled.
Console> (enable)
Deleting a Local User Account
To delete a local user account on the switch, perform this task in privileged mode:
Task
Step 1
Delete a local user account.
Step 2
Verify that the local user account has been deleted.
This example shows how to disable local user authentication for the switch and verify the configuration:
Console> (enable) clear localuser number1
Console> (enable) show localusers
Username
---------
picard
Console> (enable)

Configuring TACACS+ Authentication

The following sections describe how to configure TACACS+ authentication on the switch.
Specifying TACACS+ Servers
Specify one or more TACACS+ servers before you enable TACACS+ authentication on the switch. The
first server that you specify is the primary server, unless you explicitly make one server the primary
server by using the primary keyword.
To specify one or more TACACS+ servers, perform this task in privileged mode:
Task
Step 1
Specify the IP address of one or more TACACS+ servers. set tacacs server ip_addr [primary]
Step 2
Verify the TACACS+ configuration.
This example shows how to specify TACACS+ servers and verify the configuration:
Console> (enable) set tacacs server 172.20.52.3
172.20.52.3 added to TACACS server table as primary server.
Console> (enable) set tacacs server 172.20.52.2 primary
172.20.52.2 added to TACACS server table as primary server.
Catalyst 4500 Series, Catalyst 2948G, Catalyst 2948G-GE-TX, and Catalyst 2980G Switches Software Configuration Guide—Release 8.2GLX
78-15908-01
disabled
disabled
disabled
*
enabled(primary)
3
disabled
Telnet Session
disabled
disabled
disabled
enabled(primary)
3
disabled
Command
clear localuser picard
show localusers
Privilege Level
-------------
15
Command
show tacacs
Configuring Authentication
Http Session
----------------
disabled
disabled
disabled
enabled(primary)
-
-
30-17

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents