Configuring Tacacs+ Server Connection Options - Dell Force10 S2410-01-10GE-24P Configuration Manual

Sftos configuration guide
Hide thumbs Also See for Force10 S2410-01-10GE-24P:
Table of Contents

Advertisement

Figure 9-100. Verifying the Authentication Method Lists with the show authentication Command
Force10_S50)#show authentication
Authentication Login List Method 1 Method 2
------------------------- -------- --------
defaultList
one
local tacacs undefined
two
undefined undefined undefined
three
tacacs reject undefined
Figure 9-101
shows the assignment of list "three" to authenticate non-configured (default) users.
Figure 9-101. Assigning and Verifying the Authentication Method List Assigned to
Non-configured Users
Force10_S50) (Config)#users defaultlogin three
Force10_S50) (Config)#exit
Force10_S50)#show users authentication
Authentication Login Lists
User
System Login
---------- ---------------- -------------
admin
defaultList

Configuring TACACS+ Server Connection Options

To configure a TACACS+ server host, you must first configure its IP address with the
command, as described above. After you identify the host, the CLI puts you in the TACACS Configuration
mode for that particular host. In that mode, you can override global and default settings of the communication
parameters. You can also use the following commands for the particular TACACS host:
Command Syntax
key
key-string
port
port-number
priority
priority
timeout
To delete a TACACS+ server host, use the
local
undefined undefined
802.1x
defaultList
Command Mode
Purpose
TACACS
Specify the authentication and encryption key for all communications
Configuration
between the client and the particular TACACS server. This key must
match the key configured on the server.
Range: 1 to 128 characters
TACACS
Specify a server port number for that TACACS host. Range: zero (0) to
Configuration
65535. Default = 49
TACACS
Determine the order in which the server will be used with multiple
Configuration
authentication servers, with 0 being the highest priority.
Range: zero (0) to 65535. Default = 0
TACACS
Range: 1 to 30 seconds. Default = global setting
Configuration
Method 3
--------
no tacacs-server host
ip-address
tacacs-server host
command.
Providing User Access Security | 137

Advertisement

Table of Contents
loading

This manual is also suitable for:

Force10

Table of Contents