Enhancements in Release F.02.02

TACACS+ Authentication for Centralized Control of Switch Access Security

Table 13. Primary/Secondary Authentication Table

Access Method and

Authentication Options

Effect on Access Attempts

Privilege Level

Primary

Secondary

 

 

 

 

 

 

 

Console — Login

local

none*

Local username/password access only.

 

 

 

 

 

tacacs

local

If Tacacs+ server unavailable, uses local username/password access.

 

 

 

 

Console — Enable

local

none*

Local username/password access only.

 

 

 

 

 

tacacs

local

If Tacacs+ server unavailable, uses local username/password access.

 

 

 

 

 

 

 

 

Telnet — Login

local

none*

Local username/password access only.

 

 

 

 

 

tacacs

local

If Tacacs+ server unavailable, uses local username/password access.

 

 

 

 

 

tacacs

none

If Tacacs+ server unavailable, denies access.

 

 

 

 

Telnet — Enable

local

none*

Local username/password access only.

 

 

 

 

 

tacacs

local

If Tacacs+ server unavailable, uses local username/password access.

 

 

 

 

 

tacacs

none

If Tacacs+ server unavailable, denies access.

 

 

 

 

*When "local" is the primary option, you can also select "local" as the secondary option. However, in this case, a secondary "local" is meaningless because the switch has only one local level of username/password protection.

175