RSA Security 3.6.0 manual Setting Up TACACS+, TACACS+ Primary Authentication Server Commands

Page 11

Setting Up TACACS+

You can implement TACACS+ authentication and TACACS+ accounting at the server level and for specific interfaces and asynchronous ports on the LX unit.

Access the AAA Configuration mode on the LX.

TACACS+ Primary Authentication Server Commands

AAA:0>> tacacs+ primary authentication server address 10.242.131.15

AAA:0 >>tacacs+ primary authentication server port 49

AAA:0 >>tacacs+ primary authentication server secret STRING

AAA:0 >>tacacs+ primary authentication server retransmit 3

AAA:0 >>tacacs+ primary authentication server timeout 7

TACACS+ Primary Accounting Server Commands

AAA:0>> tacacs+ primary accounting server address 10.242.131.15

AAA:0 >>tacacs+ primary accounting server port 49

AAA:0 >>tacacs+ primary accounting server secret STRING

AAA:0 >>tacacs+ primary accounting server retransmit 3

AAA:0 >>tacacs+ primary accounting server timeout 7

TACACS+ Secondary Authentication Server Commands

AAA:0>> tacacs+ secondary authentication server address 10.242.131.15

AAA:0 >>tacacs+ secondary authentication server port 49

AAA:0 >>tacacs+ secondary authentication server secret STRING

AAA:0 >>tacacs+ secondary authentication server retransmit 3

AAA:0 >>tacacs+ secondary authentication server timeout 7

TACACS+ Secondary Accounting Server Commands

AAA:0>> tacacs+ secondary accounting server address 10.242.131.13

AAA:0 >>tacacs+ secondary accounting server port 1646

AAA:0 >>tacacs+ secondary accounting server port 1813

AAA:0 >>tacacs+ secondary accounting server secret STRING

AAA:0 >>tacacs+ secondary accounting server retransmit 3

AAA:0 >>tacacs+ secondary accounting server timeout 7

Port Commands

Config:0 >>port async #

Async #:0 >>authentication outbound tacacs+ enable

Async #:0 >>authentication inbound tacacs+ enable

Async #:0 >>tacacs+ accounting enable

Interface Commands

Config:0 >>interface #

Intf #:0 >>authentication tacacs+ enable

Intf #:0 >>tacacs+ accounting enable

11

Image 11
Contents Product Information Partner InformationProduct Requirements Solution SummaryAgent Host Configuration Setting Up RSA SecurID Authentication Command Line Interface Partner Authentication Agent ConfigurationRSA SecurID sdconf.rec RSA SecurID Authentication Command ExamplesRSA SecurID Local Subscriber Feature Setting Up RSA SecurID Authentication Web Interface Page Setting Up Radius Command Line Interface Setting Up Radius Web Interface Page TACACS+ Secondary Authentication Server Commands Setting Up TACACS+TACACS+ Primary Authentication Server Commands TACACS+ Primary Accounting Server CommandsSetting Up TACACS+ Web Interface Page Additional Functionality Certification ChecklistLX Series Mandatory Functionality RSA Native Protocol Radius Protocol