Cisco WS-C6506 Software Manual page 954

Catalyst 6500 series switch
Hide thumbs Also See for WS-C6506:
Table of Contents

Advertisement

Configuring Authentication on the Switch
To specify one or more TACACS+ servers, perform this task in privileged mode:
Task
Step 1
Specify the IP address of one or more TACACS+
servers.
Step 2
Verify the TACACS+ configuration.
This example shows how to specify TACACS+ servers and verify the configuration:
Console> (enable) set tacacs server 172.20.52.3
172.20.52.3 added to TACACS server table as primary server.
Console> (enable) set tacacs server 172.20.52.2 primary
172.20.52.2 added to TACACS server table as primary server.
Console> (enable) set tacacs server 172.20.52.10
172.20.52.10 added to TACACS server table as backup server.
Console> (enable)
Console> (enable) show tacacs
Login Authentication:
---------------------
tacacs
radius
local
Enable Authentication: Console Session
---------------------- ----------------- ----------------
tacacs
radius
local
Tacacs key:
Tacacs login attempts: 3
Tacacs timeout: 5 seconds
Tacacs direct request: disabled
Tacacs-Server
----------------------------------------
172.20.52.3
172.20.52.2
172.20.52.10
Console> (enable)
Enabling TACACS+ Authentication
Note
Specify at least one TACACS+ server before enabling TACACS+ authentication on the switch. For
information on specifying a TACACS+ server, see the
page
You can enable TACACS+ authentication for login and enable access to the switch. If desired, you can
use the console and telnet keywords to specify that TACACS+ authentication is used only on the console
or Telnet connections. If you are using both RADIUS and TACACS+, you can use the primary keyword
to force the switch to try TACACS+ authentication first.
Catalyst 6500 Series Switch Software Configuration Guide—Release 8.7
39-20
Console Session
----------------
disabled
disabled
enabled(primary)
disabled
disabled
enabled(primary)
39-19.
Chapter 39
Configuring the Switch Access Using AAA
Command
set tacacs server ip_addr [primary]
show tacacs
Telnet Session
----------------
disabled
disabled
enabled(primary)
Telnet Session
disabled
disabled
enabled(primary)
Status
-------
primary
"Specifying TACACS+ Servers" section on
OL-8978-04

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Catalyst 6506Catalyst 6509Catalyst 6513

Table of Contents