38-13
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter38 Configuring AAA Servers and the Local Database
Configuring AAA
Adding a Server to a Group
To add a AAA server to a group, perform the following steps.
Detailed Steps
Step1 Choose Configuration > Device Management > Users/AAA > AAA Server Groups, and in the AAA
Server Groups area, click the server group to which you want to add a server.
The row is highlighted in the table.
Step2 In the Servers in the Selected Group area (lower pane), click Add.
The Add AAA Server Group dialog box appears for the server group.
Step3 From the Interface Name drop-down list, choose the interface name on which the authentication server
resides.
Step4 In the Server Name or IP Address field, add either a server name or IP address for the server that you are
adding to the group.
Step5 In the Timeout field, either add a timeout value or keep the default. The timeout is the duration of time,
in seconds, that the ASA waits for a response from the primary server before sending the request to the
backup server.
Step6 The other parameters available depend on the server type. See the following sections for parameters that
are unique to each server type:
RADIUS Server Fields, page38-14
TACACS+ Server Fields, page38-15
SDI Server Fields, page38-15
Windows NT Domain Server Fields, page38-16
Kerberos Server Fields, page38-16
LDAP Server Fields, page38-17
HTTP Form Server Fields, page 38-19
Step7 Click OK.
The Add AAA Server Group dialog box closes, and the AAA server is added to the AAA server group.
Step8 In the AAA Server Groups pane, click Apply to save the changes.
The changes are saved to the running configuration.
Configuring AAA Server Parameters
This section lists the unique fields for each server type when you add a server to a server group and
includes the following topics:
RADIUS Server Fields, page38-14
TACACS+ Server Fields, page38-15
SDI Server Fields, page38-15
Windows NT Domain Server Fields, page38-16