Chapter 15: Setting RADIUS and TACACS+ Clients

Configuring the Authentication Server

Configuring a

TACACS+

Server

To configure an authentication server, choose from the following procedures:

“Configuring a TACACS+ Server” on page 168

“Configuring a RADIUS Server” on page 170

Note

Before you can configure an TACACS+ or RADIUS server, you must select an authentication method. See “Selecting the Authentication Method” on page 166.

To configure a TACACS+ server, do the following:

1.Select the Security tab.

The Security tab is displayed. See Figure 52 on page 158.

2.From the Security tab, select Authentication Servers.

The Authentication Server Configuration page is displayed. See Figure 55 on page 166.

3.Click the Tacacs+ tab.

The Authentication Server Configuration Page with the Tacacs+ tab is displayed. See Figure 55 on page 166.

Note

You cannot change the Timeout Value for a TACACS+ server. This field indicates the number of seconds, that the switch waits for a response from a TACACS+ server to an authentication request, before querying the next server in the list.

4.Specify the Key Value setting as needed.

This field defines the value of the global encryption key of the TACACS+ servers. You can define a global encryption key if you have one TACACS+ server or if there is more than one server and they all use the same encryption key. This value is used by the TACACS+ clients. The maximum length is 39 characters. Spaces and special characters are not permitted.The default value is “ATI.”

168

Page 168
Image 168
Allied Telesis AT-9000/52, AT-9000/28SP manual Configuring the Authentication Server, Configuring a

AT-9000/52, AT-9000/28SP, AT-9000/28 specifications

The Allied Telesis AT-9000/28 is a versatile and robust network switch designed for organizations seeking to enhance their networking capability. This Layer 2 managed switch delivers a high degree of performance and reliability, making it an ideal choice for businesses that require a seamless network experience.

One of the main features of the AT-9000/28 is its 28 ports, which include 24 Fast Ethernet ports and 4 Gigabit Ethernet uplink ports. This allows for flexible network configuration and scalability, accommodating both wired and wireless devices efficiently. The switch also supports auto-negotiation and auto-MDI/MDI-X, which simplifies installation and connectivity by automatically detecting and configuring the appropriate settings.

The AT-9000/28 employs advanced switching technologies, such as IEEE 802.1Q VLAN tagging, which enables the segregation of traffic for improved security and performance. This feature is crucial for businesses that require data isolation between different departments or user groups. In addition, the switch supports quality of service (QoS) protocols, allowing for traffic prioritization. This is particularly beneficial for organizations that handle multimedia applications or VoIP services that demand reliable bandwidth.

Another significant characteristic of the AT-9000/28 is its support for port mirroring. This capability is essential for network monitoring and troubleshooting, as it allows administrators to track and analyze network traffic efficiently. Furthermore, the switch supports multiple user authentication methods, including RADIUS and TACACS+, thus enhancing network security.

The AT-9000/28 is built with energy efficiency in mind, featuring Energy Efficient Ethernet (EEE) technology. This reduces power consumption during periods of low traffic without compromising performance, which aids in lowering overall operational costs.

In terms of management, the AT-9000/28 offers versatile management options, including a web-based GUI, Command Line Interface (CLI), and SNMP support. This flexibility enables network administrators to configure, monitor, and troubleshoot the switch easily.

Overall, the Allied Telesis AT-9000/28 is a reliable switch well-suited for a variety of network environments. Its combination of performance, security features, and energy efficiency makes it an excellent choice for organizations looking to optimize their network infrastructure. With robust capabilities and advanced technologies, the AT-9000/28 stands out as a valuable addition to any networking setup.