User’s Manual of WGSD-1022/WGSD-8000

 

 

 

none

Uses no authentication.

 

 

 

 

radius

Uses the list of all RADIUS servers for authentication. Uses username

 

 

 

 

tacacs

Uses the list of all TACACS servers for authentication. Uses username

 

 

 

 

Default Configuration

The local user database is checked. This has the same effect as the command aaa authentication login listname local.

Note: On the console, login succeeds without any authentication check if the authentication method is not defined.

Command Mode

Global Configuration mode

User Guidelines

The default and optional list names created with the aaa authentication login command are used with the login authentication command.

Create a list by entering the aaa authentication login list-name method command for a particular protocol, where list-nameis any character string used to name this list. The method argument identifies the list of methods that the authentication algorithm tries, in the given sequence.

The additional methods of authentication are used only if the previous method returns an error, not if it fails. To ensure that the authentication succeeds even if all methods return an error, specify none as the final method in the command line.

Example

The following example configures authentication login.

console (config) # aaa authentication login default radius local enable none

5.3.2 aaa authentication enable

The aaa authentication enable global configuration command defines authentication method lists for accessing higher privilege levels. To return to the default configuration use the no form of this command.

Syntax

aaa authentication enable {default list-name}method1 [method2...]

no aaa authentication enable default

ƒdefault — Uses the listed authentication methods that follow this argument as the default list of methods,when using higher privilege levels.

ƒlist-name— Character string used to name the list of authentication methods activated, when using accesshigher privilege levels.

-161 –