xStack DES-6500 Modular Layer 3 Chassis Ethernet Switch CLI Manual

DES-6500:4#show authen application

Command: show authen application

Application

Login Method List

Enable Method List

----------------

------------------

------------------------

Console

default

default

Telnet

Trinity

default

SSH

default

default

HTTP

default

default

DES-6500:4#

 

 

create authen server_host

Purpose

Used to create an authentication server host.

Syntax

create authen server_host <ipaddr> protocol [tacacs xtacacs

 

tacacs+ radius] {port <int 1-65535> key [<key_string 254>

 

none] timeout <int 1-255> retransmit < 1-255>}

Description

This command will create an authentication server host for the

 

TACACS/XTACACS/TACACS+ and RADIUS security protocols on

 

the Switch. When a user attempts to access the Switch with

 

authentication protocol enabled, the Switch will send authentication

 

packets to a remote TACACS/XTACACS/TACACS+ or RADIUS

 

server host on a remote host. The TACACS/XTACACS/TACACS+

 

or RADIUS server host will then verify or deny the request and

 

return the appropriate message to the Switch. More than one

 

authentication protocol can be run on the same physical server host

 

but, remember that TACACS/XTACACS/TACACS+ and RADIUS

 

are separate entities and are not compatible with each other. The

 

maximum supported number of server hosts is 16.

Parameters

server_host <ipaddr> - The IP address of the remote server host to

 

add.

 

protocol – The protocol used by the server host. The user may

 

choose one of the following:

 

tacacs – Enter this parameter if the server host utilizes the

 

TACACS protocol.

 

xtacacs - Enter this parameter if the server host utilizes the

 

XTACACS protocol.

 

tacacs+ - Enter this parameter if the server host utilizes

 

the TACACS+ protocol.

 

radius - Enter this parameter if the server host utilizes the

 

RADIUS protocol.

 

port <int 1-65535>- Enter a number between 1 and 65535 to

 

define the virtual port number of the authentication protocol on a

 

server host. The default port number is 49 for

 

TACACS/XTACACS/TACACS+ servers but the user may set a

 

unique port number for higher security. The default port number of

 

the authentication protocol on the RADIUS server is 1812.

 

key – Authentication key to be shared with a configured TACACS+

 

server only.

 

 

165

Page 168
Image 168
D-Link TM DES-6500 manual Default DES-65004#, Create authen serverhost ipaddr protocol tacacs xtacacs