Configuring The Authentication Method For Management Access - AMX NXA-ENET8-2POE Operation/Reference Manual

Gigabit ethernet layer 2 poe switch
Hide thumbs Also See for NXA-ENET8-2POE:
Table of Contents

Advertisement

Privilege Level Configuration parameters (Cont.)
• Privilege levels
1.
Click Configuration, Security, Switch, Privilege Levels.
2.
Set the required privilege level for any software module or functional group.
3.
Click Save.

Configuring The Authentication Method For Management Access

Use the Authentication Method Configuration page to specify the authentication method for controlling
management access through the console, Telnet, SSH or HTTP/HTTPS. Access can be based on the (local)
user name and password configured on the switch, or can be controlled with a RADIUS or TACACS+ remote
access authentication server. Note that the RADIUS servers used to authenticate client access for IEEE 802.1X
port authentication are also configured on this page (Configuring Authentication Through Network Access
Servers section on page 63)
FIG. 39
Authentication Method Configuration
Authentication Method Configuration parameters
• Client
• Authentication
Method
• Fallback
Remote Authentication Dial-in User Service (RADIUS) and Terminal Access Controller Access Control
System Plus (TACACS+) are logon authentication protocols that use software running on a central server to
control access to RADIUS-aware or TACACS-aware devices on the network.
An authentication server contains a database of multiple user name/password pairs with associated privilege
levels for each user that requires management access to the switch (FIG. 40).
NXA-ENET8-2POE Gigabit Ethernet Layer 2 PoE Switch
Every privilege level group can be configured to access the following modules or
system settings: Configuration Readonly, Configuration/Execute Read-write, Sta-
tus/Statistics Read-only, and Status/Statistics Read-write (e.g., clearing statistics).
The default settings provide four access levels:
1 - Read access of port status and statistics.
5 - Read access of all system functions except for maintenance and debugging
10 - read and write access of all system functions except for maintenance and
debugging
15 - read and write access of all system functions including maintenance and
debugging.
Specifies how the administrator is authenticated when logging into the switch via
Telnet, SSH, a web browser, or the console interface.
Selects the authentication method. (Options: None, Local, RADIUS, TACACS+;
Default: Local).
Selecting the option "None" disables access through the specified management
interface.
Uses the local user database for authentication if none of the configured authenti-
cation servers are alive. This is only possible if the Authentication Method is set to
something else than none or local.
Configuring the NXA-ENET8-2POE
51

Advertisement

Table of Contents
loading

Table of Contents