Security Menu & Forms
Fill in the form according to your local TACACS+ server configuration.
2
To apply "Authorization" in addition to authentication to the box and ports,
3
select the "Enable Raccess Authorization" check box.
To specify a time out period in seconds for each authentication attempt, type a
4
number in the "Timeout" field.
If the authentication server does not respond to the client's login attempt
before the specified time period, the login attempt is cancelled. The user may
retry depending on the number specified in the "Retries" field on this form.
To specify a number of times the user can request authentication verification
5
from the server before sending an authentication failure message to the user,
enter a number in the "Retries" field.
Click "apply changes."
6
The changes are stored in /etc/tacplus.conf on the CS.
Group Authorization on TACACS+
Using an authorization method in addition to authentication provides an extra
level of system security. Selecting Security > Authentication > TACACS+ in
Expert mode brings up the TACACS+ form where an administrators can
configure a TACACS+ authentication server and can also enable user
authorization checking.
By checking the "Enable Raccess Authorization" check box, an additional
level of security checking is implemented. After each user is successfully
authenticated through the standard login procedure, the CS uses TACACS+ to
authorize whether or not each user is allowed to access specific serial ports.
By default the "Enable Raccess Authorization" is disabled allowing all users
full authorization. When this feature is enabled by placing a check mark in the
box, users are denied access unless they have the proper authorization, which
must be set on the TACACS+ authentication server itself. To see the
220
By default "Raccess Authorization" is disabled, and no additional
authorization is implemented. When "Raccess Authorization" is enabled,
the authorization level of users trying to access CS or its ports using
TACACS+ authentication is checked. Users with administrator privileges
have administrative access, and users with regular user privileges have
regular user access.
Need help?
Do you have a question about the Advanced Console Server and is the answer not in the manual?