Parameter Description
Host IPaddress of the server.
Default:N/A
Key Sharedsecret to authenticate communication between the TACACS+ client and server.
Default:N/A
TCP Port TCP portused by server.
Default:49
Retransmits Maximum number of times a request is retried.
Default:3
Timeout Timeout period for TACACS+ requests,i n seconds.
Default:20 seconds
Mode Enablesor disablesthe server.
Default:enabled
SessionAuthorization Enablesor di sablessession authorization. S essionauthoriz ation turnson the optional
authorization sessionfor admin users.
Default:disabled

Table51 :

TACACS+ Server ConfigurationParameters

Using the WebUI
1. Navigate to the Configuration > Security > Authentication > Serv ers page.
2. Select TACACSServer to display the TACA CS ServerList .
3. To configurea T ACACS+ server,enter the name for the server andc lickA dd.
4. Select the name to configure serverparameters. Enter parameters as described in Table 51. Select the Mode
checkboxt o activate the authentication server.
5. Click Apply to apply the configuration.
NOTE:The configurationdoes not take effect until you perform this step.
Using the CLI
The followingcommand configures, enablesa TA CACS+ serverand enables session authorization:
(host)(config) #aaa authentication-server tacacs <name>
clone default
host <ipaddr>
key <key>
enable
session-authorization
Configuring a Win dows Server
Table5 2 defines parametersfor a Windows server used for stateful NTLM authentication.
DellPowerConnect W- Series ArubaOS 6.2 | UserGuide AuthenticationServers | 174