05.08.2013 Views

Download - D-Link

Download - D-Link

Download - D-Link

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

DES-3028 DES-3028P DES-3028G DES-3052 DES-3052P Layer 2 Fast Ethernet Managed Switch<br />

Figure 10- 44. Login Method List – Add window<br />

To define a Login Method List, set the following parameters and click Apply:<br />

Parameter Description<br />

Method List Name Enter a method list name defined by the user of up to 15 characters.<br />

Method 1, 2, 3, 4 The user may add one, or a combination of up to four of the following authentication<br />

methods to this method list:<br />

Enable Method Lists<br />

tacacs - Adding this parameter will require the user to be authenticated using<br />

the TACACS protocol from a remote TACACS server.<br />

xtacacs - Adding this parameter will require the user to be authenticated using<br />

the XTACACS protocol from a remote XTACACS server.<br />

tacacs+ - Adding this parameter will require the user to be authenticated using<br />

the TACACS+ protocol from a remote TACACS+ server.<br />

radius - Adding this parameter will require the user to be authenticated using the<br />

RADIUS protocol from a remote RADIUS server.<br />

server_group - Adding this parameter will require the user to be authenticated<br />

using a user-defined server group previously configured on the Switch.<br />

local - Adding this parameter will require the user to be authenticated using the<br />

local user account database on the Switch.<br />

none - Adding this parameter will require an authentication to access the Switch.<br />

The Enable Method List Settings window is used to set up Method Lists to promote users with user level privileges to<br />

Administrator (Admin) level privileges using authentication methods on the Switch. Once a user acquires normal user level<br />

privileges on the Switch, he or she must be authenticated by a method on the Switch to gain administrator privileges on the Switch,<br />

which is defined by the Administrator. A maximum of eight Enable Method Lists can be implemented on the Switch, one of<br />

which is a default Enable Method List. This default Enable Method List cannot be deleted but can be configured.<br />

The sequence of methods implemented in this command will affect the authentication result. For example, if a user enters a<br />

sequence of methods like TACACS - XTACACS - Local Enable, the Switch will send an authentication request to the first<br />

TACACS host in the server group. If no verification is found, the Switch will send an authentication request to the second<br />

TACACS host in the server group and so on, until the list is exhausted. At that point, the Switch will restart the same sequence<br />

with the following protocol listed, XTACACS. If no authentication takes place using the XTACACS list, the Local Enable<br />

password set in the Switch is used to authenticate the user.<br />

Successful authentication using any of these methods will give the user an "Admin" privilege.<br />

NOTE: To set the Local Enable Password, see the next section, entitled<br />

Local Enable Password.<br />

222

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!