AlterPath ACS Command Reference Guide
55
Authentication
NOTE:
If you want to dial in to the serial port on an ACS series with CHAP authentication,
you need to do the following:
1. Configure Sxx.authtype as local.
2. Add users in AlterPath ACS.
all.authtype
(cont.)
•
Ldap (authentication is performed against an ldap database using an
ldap server. The IP address and other details of the ldap server are
defined in the file
/etc/ldap.conf
)
•
Kerberos (authentication is performed using a kerberos server. The IP
address and other details of the kerberos server are defined in the file
/etc/krb5.conf
)
•
Local/Radius (authentication is performed locally first, switching to
Radius if unsuccessful)
•
Radius/Local (the opposite of the previous option)
•
Local/TacacsPlus (authentication is performed locally first, switching
to TacacsPlus if unsuccessful)
•
TacacsPlus/Local (the opposite of the previous option)
•
RadiusDownLocal (local authentication is tried only when the Radius
server is down)
•
TacacsPlusDownLocal (local authentication is tried only when the
TacacsPlus server is down)
•
Kerberos/Local (Kerberos authentication is tried first, switching to
Local if unsuccessful)
•
KerberosDownLocal (local authentication is tried only when the
kerberos server is down)
•
Ldap/Local (LDAP authentication is tried first, switching to local if
unsuccessful)
•
LdapDownLocal (local authentication is tried only when the ldap
server is down)
•
NIS - All authentication types but NIS follow the format all.authtype
<Authentication>DownLocal or <Authentication> (e.g. all.authtype
radius or radiusDownLocal or ldap or ldapDownLocal, etc). NIS
requires all.authtype to be set as local, regardless if it will be "nis" or
its “Downlocal" equivalent. The service related to "nis" or its
“Downlocal" equivalent would be configured in the
/etc/nsswitch.conf
file, not in the
/etc/portslave/pslave.conf
file.
Note that this parameter controls the authentication required by the
AlterPath ACS. The authentication required by the device to which the
user is connecting is controlled separately.
Parameter
Description
Table 3.1: Authentication parameters in /etc/portslave/pslave.conf
Summary of Contents for AlterPath ACS
Page 16: ...xvi Table of Contents...
Page 29: ...13 This page has been left intentionally blank...
Page 30: ...14 Preface...
Page 68: ...52 Device Access...
Page 86: ...70 Authentication Step 5 Saving changes To save the configuration run the command saveconf...
Page 96: ...80 Authentication Save the configuration to flash 2 cli config savetoflash...
Page 114: ...98 Authentication...
Page 204: ...188 Administration To exit the CLI mode and return to ACS s shell issue the command cli quit...
Page 268: ...252 Power Management with AlterPath PM Integration...
Page 304: ...288 PCMCIA Cards Integration...
Page 338: ...322 Profile Configuration...
Page 364: ...348 Additional Features and Applications...
Page 376: ...360 Appendix A New User Background Information...
Page 406: ...390 Appendix C Cabling and Hardware Information This page has been left intentionally blank...
Page 418: ...402 List of Tables...
Page 420: ...404 List of Figures...