22.05.2017 Views

nx.os.and.cisco.nexus.switching.2nd.edition.1587143046

Nexus Switching 2nd Edition

Nexus Switching 2nd Edition

SHOW MORE
SHOW LESS

You also want an ePaper? Increase the reach of your titles

YUMPU automatically turns print PDFs into web optimized ePapers that Google loves.

pending pending-diff<br />

Egypt(config)# show tacacs+ pending<br />

tacacs-server key 7 QTSX123<br />

tacacs-server h<strong>os</strong>t 10.10.10.12<br />

Egypt(config)# tacacs+ commit<br />

Egypt(config)# show tacacs-server<br />

Global TACACS+ shared secret:********<br />

timeout value:5<br />

deadtime value:0<br />

source interface:any available<br />

total number of servers:1<br />

following TACACS+ servers are configured:<br />

10.10.10.12:<br />

available on port:49<br />

Egypt(config)# show tacacs+ pending<br />

No active CFS distribution session exist for TACACS+<br />

Egypt(config)# copy running-config startup-config<br />

[########################################] 100<br />

Egypt(config)#<br />

Note<br />

The tacacs+ commit comm<strong>and</strong> changes the temporary database configuration to the<br />

running configuration.<br />

Configuring TACACS+ Server Groups<br />

With NX-OS, you can specify one or more remote AAA servers to authenticate users using<br />

server groups; members of a group must belong to the TACACS+ protocol. The TACACS+<br />

servers are tried in the same order in which they are configured.<br />

Example 5-14 shows how to configure TACACS+ server groups.<br />

Example 5-14. Configuring the TACACS+ Server Group of TACACS+Server<br />

Click here to view code image<br />

Egypt(config)# aaa group server tacacs+ TACACS+Server<br />

Egypt(config-tacacs+)# server 10.10.10.12<br />

Egypt(config-tacacs+)# show tacacs-server groups<br />

total number of groups:1<br />

following TACACS+ server groups are configured:<br />

group TACACS+Server:<br />

server 10.10.10.12 on port 49

Hooray! Your file is uploaded and ready to be published.

Saved successfully!

Ooh no, something went wrong!