Automatically Configuring A New Or Replacement Password With The Authentication Server - Cisco TrustSec Configuration Manual

Table of Contents

Advertisement

Automatically Configuring a New or Replacement Password with the Authentication Server

Batch size = 50
Ignore preferred server
Server Group Deadtime = 20 secs (default)
Global Server Liveness Automated Test Deadtime = 20 secs
Global Server Liveness Automated Test Idle Time = 60 mins
Global Server Liveness Automated Test = ENABLED (default)
Preferred list, 1 server(s):
*Server: 10.15.20.102, port 1812, A-ID
Installed list: SL1-1E6E6AE57D4E2A9B320D1844C68BA291, 3 server(s):
*Server: 10.15.20.102, port 1812, A-ID
*Server: 10.15.20.101, port 1812, A-ID 255C438487B3503485BBC6F55808DC24
Installed list: SL2-1E6E6AE57D4E2A9B320D1844C68BA293, 3 server(s):
*Server: 10.0.0.1, port 1812, A-ID 04758B1F05D8C1439F27F9509E07CFB6.
*Server: 10.0.0.2, port 1812, A-ID 04758B1F05D8C1439F27F9509E07CFB6.
Automatically Configuring a New or Replacement Password
with the Authentication Server
As an alternative to manually configuring the password between the switch and the authentication server,
you can initiate a password negotiation from the switch. To configure the password negotiation, perform
this task:
Detailed Steps for Catalyst 6500
Command
Step 1
Router# cts change-password server
ip-address port {key secret | a-id a-id}
Cisco TrustSec Configuration Guide
3-24
Status = ALIVE
auto-test = TRUE, idle-time = 120 mins, deadtime = 20 secs
Status = ALIVE
auto-test = TRUE, idle-time = 60 mins, deadtime = 20 secs
Status = ALIVE
auto-test = TRUE, idle-time = 60 mins, deadtime = 20 secs
Status = ALIVE
auto-test = TRUE, idle-time = 60 mins, deadtime = 20 secs
Status = DEAD
auto-test = TRUE, idle-time = 60 mins, deadtime = 20 secs
Chapter 3
Configuring Identities, Connections, and SGTs
87B3503255C4384485BB808DC24C6F55
87B3503255C4384485BB808DC24C6F55
Purpose
Initiates a password negotiation between the switch
and the authentication server.
ip-address—The IP address of the authentication
server.
port—The UDP port of the authentication server.
key secret—The RADIUS shared secret of the
authentication server.
a-id a-id—The A-ID associated with the
authentication server.
OL-22192-02

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents