Dell Force10 S2410-01-10GE-24P Configuration Manual page 136

Sftos configuration guide
Hide thumbs Also See for Force10 S2410-01-10GE-24P:
Table of Contents

Advertisement

Step
Command Syntax
4
show tacacs
show authentication
5
would generally not be the last method specified, in order to avoid a situation where the final
TACACS
authentication option depends on a server that might be offline. Generally, you would specify
final method. For example, in the command string "
", "listone" is the name given to the method list, followed by the selected sequence of authentication
local
methods—"tacacs" and then "local". For details on setting local passwords, see
Password on page
TACACS+ includes a group of configurable settings that you can also leave in their default settings. You
can configure some global settings (for all TACACS+ servers), or you can configure settings at the
individual server level. See the Security chapter in the
global settings. See the following section,
page
137, for more on configuring one host.
To specify the IP address of the TACACS host, use the
mode, as shown here. In this example, the user then changes the local timeout to 5 seconds:
Figure 9-97. Setting the IP Address of a TACACS+ Server
Force10#config
Force10 (Config)#tacacs-server host 1.1.1.1
Force10 (Tacacs)#timeout 5
Force10 (Tacacs)#exit
Force10 (Config)#
Figure 9-98. Display Settings for TACACS+ Server Connections
Force10 #show tacacs
Global Timeout: 5
IP address
---------------
10.10.10.226
10.16.1.58 49
Figure 9-99
sequence. The list called "one" sets TACACS+ as the second authentication method; list "two" defaults to
local authentication; list "three" sets TACACS+ as the first method.
Figure 9-99. Setting the Authentication Method with the authentication login Command
Force10_S50 (Config)#authentication login one local tacacs
Force10_S50 (Config)#authentication login two
Force10_S50 (Config)#authentication login three tacacs reject
136
|
Providing User Access Security
36.
Port
Timeout
-----
-------
49
Global 0
Global 0
shows the creation of three user authentication method lists, each one with a different priority
Command
Mode
Purpose
Privileged
Verify the configuration and status of TACACS
Exec
servers (See
Privileged
Display the ordered authentication methods for all
Exec
authentication login lists.
authentication login listone tacacs
FTOS Command Line Interface Reference
Configuring TACACS+ Server Connection Options on
tacacs-server host
Priority
--------
Figure
9-98)
.
Creating a User and
command in the Global Config
as the
local
for details on

Advertisement

Table of Contents
loading

This manual is also suitable for:

Force10

Table of Contents