Juniper J-Series Administration Manual page 37

Juniper networks router administration guide
Hide thumbs Also See for J-Series:
Table of Contents

Advertisement

Configuring Authentication Order
The procedure provided in this section configures the Services Router to attempt
user authentication with the local password first, then with the RADIUS server, and
finally with the TACACS+ server.
To configure authentication order:
1.
2.
3.
4.
Table 13: Configuring Authentication Order
Task
Navigate to the System level in
the configuration hierarchy.
Add RADIUS authentication to
the authentication order.
Add TACACS+ authentication to
the authentication order.
Navigate to the top of the configuration hierarchy in either the J-Web or CLI
configuration editor.
Perform the configuration tasks described in Table 13 on page 15.
If you are finished configuring the network, commit the configuration.
To completely set up RADIUS or TACACS+ authentication, you must configure
at least one RADIUS or TACACS+ server and create user template accounts.
Go on to one of the following procedures:
To configure a RADIUS server, see "Setting Up RADIUS
Authentication" on page 12.
To configure a TACACS+ server, see "Setting Up TACACS+
Authentication" on page 13.
To configure a remote user template account, see "Creating a Remote
Template Account" on page 19.
To configure local user template accounts, see "Creating a Local Template
Account" on page 20.
J-Web Configuration Editor
1.
In the J-Web interface, select
Configuration>View and Edit>Edit
Configuration.
2.
Next to System, click Configure or Edit.
1.
In the Authentication order box, click Add
new entry.
2.
In the list, select radius.
3.
Click OK.
1.
In the Authentication Order box, click Add
new entry.
2.
In the list, select tacplus.
3.
Click OK.
Managing User Authentication with a Configuration Editor
Chapter 1: Managing User Authentication and Access
CLI Configuration Editor
From the
hierarchy level, enter
[edit]
edit system
Insert the
radius
statement in the
authentication order:
insert system authentication-order radius
after password
Insert the
statement in the
tacplus
authentication order:
insert system authentication-order tacplus
after radius
15

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents