D-Link DGS-3224TGR Command Line Interface Reference Manual page 152

Layer 2 gigabit ethernet switch
Hide thumbs Also See for DGS-3224TGR:
Table of Contents

Advertisement

DGS-3224TGR Gigabit Ethernet Switch CLI Reference Manual
config authentication server_host
Used to configure a user-defined authentication server host.
Purpose
Syntax
config authentication server_host <server_ip> protocol
[tacacs|xtacacs|tacacs+] {port <int 1-65535> |key <key_string 254> |
timeout <int 1-255> | retransmit <int 1-255>}
This command will configure a user-defined authentication server host for
Description
the TACACS/XTACACS/TACACS+ security protocols on the Switch. When
a user attempts to access the Switch with authentication protocol enabled,
the Switch will send authentication packets to a remote
TACACS/XTACACS/TACACS+ server host on a remote host. The
TACACS/XTACACS/TACACS+ server host will then verify or deny the
request and return the appropriate message to the Switch. More than one
authentication protocol can be run on the same physical server host but,
remember that TACACS/XTACACS/TACACS+ are separate entities and
are not compatible with each other. The maximum supported number of
server hosts is 16.
Parameters
server_host <server_ip> – The IP address of the remote server host the
user wishes to alter.
protocol – The protocol used by the server host. The user may choose one
of the following:
port <int 1-65535> – Enter a number between 1 and 65535 to define the
virtual port number of the authentication protocol on a server host. The
default port number is 49 for TACACS/XTACACS/TACACS+ servers but
the user may set a unique port number for higher security.
key <key_string 254> – Authentication key to be shared with a configured
TACACS+ server only. Specify an alphanumeric string up to 254 characters
or choose none.
timeout <int 1-255> – Enter the time in seconds the Switch will wait for the
server host to reply to an authentication request. The default value is 5
seconds.
retransmit <int 1-255> – Enter the value in the retransmit field to change
how many times the device will resend an authentication request when the
TACACS or XTACACS server does not respond. This field is inoperable for
the TACACS+ protocol.
Only administrator-level users can issue this command.
Restrictions
tacacs – Enter this parameter if the server host utilizes the
TACACS protocol.
xtacacs - Enter this parameter if the server host utilizes the
XTACACS protocol.
tacacs+ - Enter this parameter if the server host utilizes the
TACACS+ protocol.
148

Advertisement

Table of Contents
loading

Table of Contents