Nortel Networks 40M2420 manual 6TACACS+ Server Menu Options /cfg/sys/tacacs, Secbd enabledisable

Models: 40M2420

1 382
Download 382 pages 56.7 Kb
Page 182
Image 182

Alteon OS Command Reference

Table 6-6TACACS+ Server Menu Options (/cfg/sys/tacacs)

Command Syntax and Usage

prisrv <IP address>

Defines the primary TACACS+ server address.

secsrv <IP address>

Defines the secondary TACACS+ server address.

secret <1-32 character secret>

This is the shared secret between the switch and the TACACS+ server(s).

secret2 <1-32 character secret>

This is the secondary shared secret between the switch and the TACACS+ server(s).

port <TACACS port configure, default 49>

Enter the number of the TCP port to be configured, between 1 - 65000. The default is 49.

retries <TACACS server retries, 1-3>

Sets the number of failed authentication requests before switching to a different TACACS+ server. The default is 3 requests.

timeout <TACACS server timeout seconds, 4-15>

Sets the amount of time, in seconds, before a TACACS+ server authentication attempt is consid- ered to have failed. The default is 5 seconds.

bckdoor disableenable

Enables or disables the TACACS+ back door for telnet. The telnet command also applies to SSH/SCP connections, and the Browser-Based Interface (BBI). The default is disabled.

To obtain the TACACS+ backdoor password for your GbESM, contact your IBM Service and Support line.

secbd enabledisable

Enables or disables TACACS+ secure backdoor access through telnet, SSH, and the Browser- Based Interface (BBI).

cmap enabledisable

Enables or disables TACACS+ privilege-level mapping.

The default value is disabled.

passch enabledisable

Enables or disables TACACS+ password change.

The default value is disabled.

chpass_p

Configures the password for the primary TACACS+ server. The CLI will prompt you for input.

chpass_s

Configures the password for the secondary TACACS+ server. The CLI will prompt you for input.

182 „ Chapter 6: The Configuration Menu

40M2420, April 2007

Page 182
Image 182
Nortel Networks 40M2420 manual 6TACACS+ Server Menu Options /cfg/sys/tacacs, Secbd enabledisable, Cmap enabledisable