data:image/s3,"s3://crabby-images/e8f7c/e8f7c19d948d050d56270c5822700ba93ef23587" alt="Cisco Nexus 5000 Series Cli Configuration Manual Download Page 226"
S e n d f e e d b a c k t o n x 5 0 0 0 - d o c f e e d b a c k @ c i s c o . c o m
1-8
Cisco Nexus 5000 Series Switch CLI Software Configuration Guide
OL-16597-01
Chapter 1 Configuring AAA
Configuring AAA
The following example shows how to configure authentication methods for the console login:
switch#
configure terminal
switch(config)#
aaa authentication login console group radius
switch(config)#
exit
switch#
show aaa authentication
switch#
copy running-config startup-config
Configuring Default Login Authentication Methods
The authentication methods include the following:
•
Global pool of RADIUS servers
•
Named subset of RADIUS or servers
•
Local database on the Nexus 5000 Series switch
•
Username only
The default method is local.
Before you configure default login authentication methods, configure RADIUS or server
groups as needed. To configure default login authentication methods, perform this task:
Step 4
switch#
show aaa authentication
(Optional) Displays the configuration of the console
login authentication methods.
Step 5
switch#
copy running-config startup-config
(Optional) Copies the running configuration to the
startup configuration.
Command
Purpose
Command
Purpose
Step 1
switch#
configure terminal
Enters configuration mode.
Step 2
switch(config)#
aaa authentication login
default
{
group
group-list
[
none
]|
local
|
none
}
Configures the default authentication methods.
The
group-list
argument consists of a
space-delimited list of group names. The group
names are the following:
•
radius
—Uses the global pool of RADIUS
servers for authentication.
•
named-group
—Uses a named subset of
or RADIUS servers for
authentication.
The
local
method uses the local database for
authentication. The
none
method uses the username
only.
The default login method is
local
, which is used
when no methods are configured or when all of the
configured methods do not respond.
Step 3
switch(config)#
exit
Exits configuration mode.