11.06.2015 Views

ES4626-SFP Management Guide.pdf

ES4626-SFP Management Guide.pdf

ES4626-SFP Management Guide.pdf

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

TACACS+ terminal access controller access control protocol is a protocol similar to<br />

the radius protocol for control the terminal access to the network. Three independent<br />

functions of Authentication, Authorization, Accounting are also available in this protocol.<br />

Compared with RADIUS, the transmission layer of TACACS+ protocol is adopted with<br />

TCP protocol, further with the packet head ( except for standard packet head) encryption,<br />

this protocol is of a more reliable transmission and encryption characteristics, and is<br />

more adapted to security control.<br />

According to the characteristics of the TACACS+ (Version 1.78), we provide<br />

TACACS+ authentication function on the switch, when the user logs, such as telnet, the<br />

authentication of user name and password can be carried out with TACACS+.<br />

2.9.2 TACACS+ Configurations<br />

1. Configure the TACACS+ authentication key<br />

2. Configure the TACACS+ server<br />

3. Configure the TACACS+ authentication timeout time<br />

1) Configure the TACACS+ authentication key<br />

Command<br />

Explanation<br />

Global Mode<br />

Configure the TACACS+ server key; the<br />

tacacs-server key <br />

“no tacacs-server key” command<br />

no tacacs-server key<br />

deletes the key<br />

2) Configure TACACS+ server<br />

Command<br />

Explanntion<br />

Global Mode<br />

tacacs-server authentication host Configure the IP address and listen port<br />

[[port {}] number of the TACACS+ authentication<br />

[primary]]<br />

server; the “no” form of this command<br />

no tacacs-server authentication host deletes the TACACS+ authentication<br />

<br />

server<br />

3) Configure the TACACS+ authentication timeout time<br />

Command<br />

Explanation<br />

Global Mode<br />

Configure the authentication timeout for<br />

tacacs-server timeout the TACACS+ server, the “no<br />

no tacacs-server timeout<br />

tacacs-server timeout” command<br />

restores the default configuration<br />

121

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!