Tacacs+ Scenarios Typical Examples - Planet XGS3-42000R User Manual

4-slot layer 3 ipv6/ ipv4 routing chassis switch
Table of Contents

Advertisement

3. Configure the TACACS+ authentication timeout time
Global Mode
tacacs-server timeout <seconds>
no tacacs-server timeout
4. Configure the IP address of the TACACS+ NAS
Global Mode
tacacs-server nas-ipv4 <ip-address>
no tacacs-server nas-ipv4

51.3 TACACS+ Scenarios Typical Examples

A computer connects to a switch, of which the IP address is 10.1.1.2 and connected with a TA CACS+
authentication server; IP address of the server is 10.1.1.3 and the authentication port is defaulted at 49, set
telnet log on authentication of the switch as tacacs local, via using TA CA CS+ authentication server to achieve
telnet user authentication.
XGS 3-42000R(config)#interface vlan 1
XGS 3-42000R(config-if-vlan1)#ip address 10.1.1. 2 255.255. 255. 0
XGS 3-42000R(config-if-vlan1)#exit
XGS 3-42000R(config)#tacacs-server authentication host 10.1.1.3
XGS 3-42000R(config)#tacacs-server key test
XGS 3-42000R(config)#aut hentication login vty tacacs local
Command
Command
10.1.1.1
Figure 51-3-1
Configure the authentication timeout for the
TA CACS+ server, the "no tacacs-server
timeout" command restores the default
configuration.
To configure the source IP address for the
TA CACS+ packets for the switch.
10.1.1.2
Tacacs Server
10.1.1.3
TACACS Configuration
51-2
Explanation
Explanation

Advertisement

Table of Contents

Troubleshooting

loading

Table of Contents