5-25
Cisco Wireless LAN Controller Configuration Guide
OL-17037-01
Chapter 5 Configuring Security Solutions
Configuring
Step 10
In the Server Timeout field, enter the number of seconds between retransmissions. The valid range is 5
to 30 seconds, and the default value is 5 seconds.
Note
Cisco recommends that you increase the timeout value if you experience repeated
reauthentication attempts or the controller falls back to the backup server when the primary
server is active and reachable.
Step 11
Click
Apply
to commit your changes.
Step 12
Click
Save Configuration
to save your changes.
Step 13
Repeat the previous steps if you want to configure any additional services on the same server or any
additional servers.
Step 14
To specify the order of authentication when multiple databases are configured, click
Security
>
Priority
Order
>
Management User
. The Priority Order > Management User page appears (see
).
Figure 5-11
Priority Order > Management User Page
Step 15
For Authentication Priority, choose either
Radius
or
to specify which server has priority over
the other when the controller attempts to authenticate management users. By default, the local database
is always queried first. If the username is not found, the controller switches to the server if
configured for or to the RADIUS server if configured for Radius. The default setting is local
and then Radius.
Step 16
Click
Apply
to commit your changes.
Step 17
Click
Save Configuration
to save your changes.
Using the CLI to Configure
Use the commands in this section to configure through the controller CLI.
Note
Refer to the
“Using the GUI to Configure ” section on page 5-23
for the valid ranges and
default values of the parameters used in the CLI commands.
1.
Use these commands to configure a authentication server:
•
config tacacs auth add
index
server_ip_address port#
{
ascii
|
hex
}
shared_secret
—Adds a
authentication server.
•
config tacacs auth delete
index
—Deletes a previously added authentication server.