38-15
Cisco ASA 5500 Series Configuration Guide using ASDM
Chapter38 Configuring AAA Servers and the Local Database
Configuring AAA
TACACS+ Server Fields
The following table describes the unique fields for configuring TACACS+ servers, for use with the
“Adding a Server to a Group” section on page38-13.
SDI Server Fields
The following table describes the unique fields for configuring SDI servers, for use with the “Adding a
Server to a Group” section on page38-13.
Microsoft CHAPv2 Capable If you use double authentication and enable password management in
the tunnel group, then the primary and secondary authentication
requests include MS-CHAPv2 request attributes. If a RADIUS server
does not support MS-CHAPv2, then you can configure that server to
send a non-MS-CHAPv2 authentication request by unchecking this
check box.
Retry Interval The duration of time, 1 to 10 seconds, that the ASA waits between
attempts to contact the server.
Server Accounting Port The server port to be used for accounting of users. The default port is
1646.
Server Authentication Port The server port to be used for authentication of users. The default port
is 1645.
Server Secret Key The shared secret key used to authenticate the RADIUS server to the
ASA. The server secret that you configure here should match the one
configured on the RADIUS server. If you do not know the server secret,
ask the RADIUS server administrator. The maximum field length is 64
characters.
Field Description
Field Description
Server Port The port to be used for this server.
Server Secret Key The shared secret key used to authenticate the TACACS+ server to the
ASA. The server secret that you configure here should match the one
that is configured on the TACACS+ server. If you do not know the server
secret, ask the RADIUS server administrator. The maximum field length
is 64 characters.
Field Description
Server Port The TCP port number by which this server is accessed.
Retry Interval The duration of time, 1 to 10 seconds, that the ASA waits between
attempts to contact the server.