27

TACACS+ Configuration

This chapter provides information about the commands used to configure and monitor TACACS+ (Terminal Access Controller Access‐Control System Plus).

TACACS+ is a security protcol that provides services for secure authentication, CLI command authorization, and CLI auditing for administrative access. It can be used as an alternative to the standard RADIUS security protocol (RFC 2865). TACACS+ runs over TCP and encrypts the body of each management packet.

Based on the now obsolete TACACS protocol (defined in RFC 1492), TACACS+ is defined in an un‐published and expired Internet Draft draft‐grant‐tacacs‐02.txt, “The TACACS+ Protocol Version 1.78,” January, 1997.

For detailed information about using TACACS+ in your network, refer to the Enterasys Feature Guide “TACACS+ Configuration” located on the Enterasys web site:

http://www.enterasys.com/support/manuals/f.html#M

For information about...

Refer to page...

 

 

show tacacs

27-2

 

 

set tacacs

27-3

 

 

show tacacs server

27-3

 

 

set tacacs server

27-4

 

 

clear tacacs server

27-5

 

 

show tacacs session

27-6

 

 

set tacacs session

27-7

 

 

clear tacacs session

27-8

 

 

show tacacs command

27-9

 

 

set tacacs command

27-9

 

 

show tacacs singleconnect

27-10

 

 

set tacacs singleconnect

27-10

 

 

show tacacs interface

27-11

 

 

set tacacs interface

27-11

 

 

clear tacacs interface

27-12

 

 

SecureStack C3 Configuration Guide 27-1

Page 835
Image 835
Enterasys Networks 9034313-07 manual TACACS+ Configuration