3Com Switch 8800 Configuration Guide
Chapter 40 AAA and RADIUS/ Protocol Con
figuration
40-23
Configuring Authentication Servers
z
Configuring Authorization Servers
z
Configuring Accounting Servers and the Related Attributes
z
Configuring the Source Address for Packets Sent by NAS
z
Setting a Key for Securing the Communication with TACACS Server
z
Setting the Username Format Acceptable to the TACACS Server
z
Setting the Unit of Data Flows Destined for the TACACS Server
z
Setting Timers Regarding TACACS Server
Note:
Pay attention to the following when configuring a TACACS server:
z
server does not check whether a scheme is being used by users when
changing most of HWTACS attributes, unless you delete the scheme.
z
By default, the TACACS server has no key.
In the above configuration tasks, creating scheme and configuring TACACS
authentication/authorization server are required; all other tasks are optional and you
can determine whether to perform these configurations as needed.
40.4.1 Creating a HWTACAS Scheme
As aforementioned, protocol is configured scheme by scheme. Therefore,
you must create a scheme and enter view before you perform
other configuration tasks.
Perform the following configuration in system view.
Table 40-26
Create a scheme
Operation
Command
Create a scheme and
enter view
scheme
-scheme-name
Delete a scheme
undo scheme
-scheme-name
By default, no scheme exists.
If the scheme you specify does not exist, the system creates it and enters
view. In view, you can configure the scheme
specifically.
The system supports up to 16 schemes. You can only delete the schemes
that are not being used.