Authentication Commands 4

-tacacs+ - Specifies all TACACS+ hosts configure with the tacacs-server host command described on page 4-98.

-server-group - Specifies the name of a server group configured with the aaa group server command described on 4-102.(Range: 1-255 characters)

Default Setting

Authorization is not enabled

No servers are specified

Command Mode

Global Configuration

Command Usage

This command performs authorization to determine if a user is allowed to run an Exec shell.

AAA authentication must be enabled before authorization is enabled.

If this command is issued without a specified named method, the default method list is applied to all interfaces or lines (where this authorization type applies), except those that have a named method explicitly defined.

Example

Console(config)#aaa authorization exec default group tacacs+ Console(config)#

authorization exec

This command applies an authorization method to local console or Telnet connections. Use the no form to disable authorization on the line.

Syntax

authorization exec {default list-name}no authorization exec

default - Specifies the default method list created with the aaa authorization exec command (page 4-108).

list-name - Specifies a method list created with the aaa authorization exec command.

Default Setting

None

Command Mode

Line Configuration

4-109

Page 405
Image 405
Accton Technology ES3528M-SFP manual Authorization exec, Authorization is not enabled No servers are specified