User Authentication

3-57

3
Command Attributes
Authentication – Select the authentication, or authentication sequence required:
-Local – User authentication is performed only locally by the switch.
-Radius – User authentication is performed using a RADIUS server only.
-TACACS – User authentication is performed using a TACACS+ server only.
- [authentication sequence] – User authentication is performed by up to three
authentication methods in the indicated sequence.
RADIUS Settings
-Global – Provides globally applicable RADIUS settings.
-Server Index – Specifies one of five RADIUS servers that may be configured.
The switch attempts authentication using the listed sequence of servers. The
process ends when a server either approves or denies access to a user.
-Server Port Number – Network (UDP) port of authentication server used for
authentication messages. (Range: 1-65535; Default: 1812)
-Number of Server Transmits – Number of times the switch tries to authenticate
logon access via the authentication server. (Range: 1-30; Default: 2)
-Timeout for a Reply – The number of seconds the switch waits for a reply from
the RADIUS server before it resends the request. (Range: 1-65535; Default: 5)
TACACS Settings
-Global – Provides globally applicable TACACS+ settings.
-Server Index – Specifies the index number of the server to be configured. The
switch currently supports only one TACACS+ server.
-Server Port Number – Network (TCP) port of TACACS+ server used for
authentication messages. (Range: 1-65535; Default: 49)
-Number of Server Transmits – Number of times the switch tries to authenticate
logon access via the authentication server. (Range: 1-30; Default: 2)
-Timeout for a Reply – The number of seconds the switch waits for a reply from
the RADIUS server before it resends the request. (Range: 1-540; Default: 5)
Note: The local switch user database has to be set up by manually entering user names
and passwords using the CLI. (See "username" on page 4-77)