09.12.2012 Views

Understanding the network.pdf - Back to Home

Understanding the network.pdf - Back to Home

Understanding the network.pdf - Back to Home

SHOW MORE
SHOW LESS

Create successful ePaper yourself

Turn your PDF publications into a flip-book with our unique Google optimized e-Paper software.

Now <strong>the</strong> router's login is back <strong>to</strong> its default:<br />

User Access Verification<br />

Username: root!<br />

Password:<br />

Router><br />

At this point in <strong>the</strong> configuration, <strong>the</strong> router will only use local<br />

au<strong>the</strong>ntication, because <strong>the</strong> RADIUS server has not been defined.<br />

Three configuration commands are needed <strong>to</strong> set up RADIUS:<br />

Router(config)#radius-server host 192.168.0.10 auth-port<br />

1645 acct-port 1646<br />

Router(config)#radius-server key agoodkey<br />

Router(config)#ip radius source-interface eth0/0<br />

For TACACS+ <strong>the</strong> commands are as follows:<br />

local-AS(config)#tacacs-server host 192.168.0.11<br />

local-AS(config)#tacacs-server key ano<strong>the</strong>rkey<br />

ip tacacs source-interface eth0/0<br />

The first two commands are required for au<strong>the</strong>ntication <strong>to</strong> work. The<br />

command defines <strong>the</strong> IP address of <strong>the</strong><br />

server and, if RADIUS is used, <strong>the</strong> UDP port numbers employed for <strong>the</strong><br />

accounting and authorization server. The command specifies <strong>the</strong> shared text key that <strong>the</strong> RADIUS<br />

server and <strong>the</strong> router use for au<strong>the</strong>ntication. The < IP [service]<br />

source-interface> command is optional; it is used <strong>to</strong> define which<br />

interface will be identified with all of <strong>the</strong> requests. This last option

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!