ZXR10 5900/5200 Series User Manual (Basic Configuration Volume)
Configuration
Overview
, Terminal Access Controller Access Control System, is
the most popular AAA protocol which is the simplified name of Au-
thorization, Authentication and Accounting. supports in-
dependent authentication, authorization and accounting, allowing
different security server to be authentication, authoriza-
tion and accounting server respectively.
PPP user and Telnet user that use the system service should be au-
thenticated, authorized and accounted in ZXROS. proto-
col can solve this problem effectively. module provides
centralized security authentication, authorization and accounting
for logging user.
software module in ZXROS is client software authen-
ticated by . It implements the protocol interaction be-
tween NAS and security server to complete
AAA function. client also provides the operation that
configuration needs to configure environment.
At present, ZXR10 5900/5200 supports authentication
to provide authentication of Telnet users accessing the routers.
ZXR10 5900/5200 supports multiple server groups.
Each group permits the configuration of four authen-
tication servers and each group can be configured with two
parameters: server timeout time and retry times. The adminis-
trator can configure different server groups to select a
specific server.
Configuring
1. To enable protocol function, use the following com-
mand.
Command
Function
ZXR10(config)#
tacacs enable
This enables protocol
function.
2. To disable protocol function, use the following com-
mmand.
Command
Function
ZXR10(config)#
tacacs disable
[
clear
]
This disables protocol
function.
3. To configure server group member, use the following
command.
124
Confidential and Proprietary Information of ZTE CORPORATION