xStack DES-6500 Modular Layer 3 Chassis Ethernet Switch CLI Manual

create authen server_host

<key_string 254> - Specify an alphanumeric string up to

 

254 characters to be a key for the TACACS server.

 

none – Specify this parameter to not use any key.

 

timeout <int 1-255>- Enter the time in seconds the Switch will wait

 

for the server host to reply to an authentication request. The default

 

value is 5 seconds.

 

retransmit <int 1-255>- Enter the value in the retransmit field to

 

change how many times the device will resend an authentication

 

request when the TACACS/XTACACS/TACACS+ or RADIUS

 

server does not respond.

Restrictions

Only administrator-level users can issue this command.

Example usage:

To create a TACACS+ authentication server host, with port number 1234, a timeout value of 10 seconds and a retransmit count of 5.

DES-6500:4#create authen server_host 10.1.1.121 protocol tacacs+ port 1234 timeout 10 retransmit 5

Command: create authen server_host 10.1.1.121 protocol tacacs+ port 1234 timeout 10 retransmit 5

Success.

DES-6500:4#

config authen server_host

Purpose

Used to configure a user-defined authentication server host.

Syntax

config authen server_host <ipaddr> protocol [tacacs xtacacs

 

tacacs+ radius] {port <int 1-65535> key [<key_string 254>

 

none] timeout <int 1-255> retransmit < 1-255>}

Description

This command will configure a user-defined authentication server

 

host for the TACACS/XTACACS/TACACS+ and RADIUS security

 

protocols on the Switch. When a user attempts to access the

 

Switch with authentication protocol enabled, the Switch will send

 

authentication packets to a remote

 

TACACS/XTACACS/TACACS+/RADIUS server host on a remote

 

host. The TACACS/XTACACS/TACACS+/RADIUS server host will

 

then verify or deny the request and return the appropriate message

 

to the Switch. More than one authentication protocol can be run on

 

the same physical server host but, remember that

 

TACACS/XTACACS/TACACS+ are separate entities and are not

 

compatible with each other. The maximum supported number of

 

server hosts is 16.

Parameters

server_host <ipaddr> - The IP address of the remote server host to

 

be altered.

 

protocol – The protocol used by the server host. The user may

 

choose one of the following:

 

tacacs – Enter this parameter if the server host utilizes the

166

Page 169
Image 169
D-Link TM DES-6500 manual Config authen serverhost ipaddr protocol tacacs xtacacs