Fortinet v3.0 MR7 manual Server Key, Authentication Type

Models: v3.0 MR7

1 66
Download 66 pages 4.08 Kb
Page 26
Image 26

TACACS+ servers

Authentication servers

Figure 6: TACACS+ server configuration

Name

Enter the name of the TACACS+ server.

Server Name/IP

Enter the server domain name or IP address of the TACACS+

 

server.

Server Key

Enter the key to access the TACACS+ server.

Authentication Type

Select the authentication type to use for the TACACS+ server.

 

Selection includes: Auto, ASCII, PAP, CHAP, and MSCHAP. Auto

 

authenticates using PAP, MSCHAP, and CHAP (in that order).

To configure the FortiGate unit for TACACS+ authentication - CLI

config user tacacs+ edit <server_name>

set auth-type {ascii auto chap ms_chap pap} set key <server_key>

set tacacs+-port <tacacs+_port_num> set server <domain>

end

To remove a TACACS+ server from the FortiGate unit configuration - web-based manager

Note: You cannot remove a TACACS+ server that belongs to a user group. Remove it from the user group first.

1Go to User > TACACS+.

2Select the Delete icon beside the name of the TACACS+ server that you want to remove.

3Select OK.

Figure 7: Delete TACACS+ server

Edit

Delete

Create New

Add a new TACACS+ server. The maximum number is 10.

Server

The server domain name or IP address of the TACACS+ server.

 

FortiOS v3.0 MR7 User Authentication User Guide

26

01-30007-0347-20080828

Page 26
Image 26
Fortinet v3.0 MR7 manual Server Key, Authentication Type