338 |341
13.3.5
TACACS Authorization Status
Supermicro switches provide an option to configure TACACS authorization status. Users can
specify one of the option Enable or Disable.
If authorization status is enabled, during authentication switch will also send out the
authorization request to server. The authorization requests are used to get privilege
levels for users. When authorization status is disabled, all authenticated
users will be logged in with default privilege level 1. When authorization status is enabled, the
authentication users will be logged in with privilege levels configured in
server.
Follow the steps below to configure the TACACS authorization to be used.
Step
Command
Description
Step 1
configure terminal
Enters the configuration mode.
Configures TACACS authorization
Step 2
aaa authorization group Tacacs
to be used.
Step 3
End
Exits the configuration mode.
Step 4
show tacacs
Displays the TACACS configuration.
Step 5
write startup-config
Optional step – saves this configuration
to be part of the startup configuration.
The “no aaa authorization group tacacs” command disables the TACACS
authorization status.
The example below shows the commands used to configure the TACACS authorization status to
be used.
SMIS# configure terminal
SMIS(config)# aaa authorization group tacacs
SMIS(config)# end
SMIS(config)# show tacacs
Server : 1
Address : 192.168.2.11
Single Connection : no
TCP port : 49