
xStack DES-3800 Series Layer 3 Stackable Fast Ethernet Managed Switch CLI Manual
258
group
can only have hosts that are running the specified protocol. For example, the TACACS
server
group
can only have TACACS
server hosts
.
The administrator for the Switch may set up 5 different authentication techniques per user-defined
method
list
(TACACS / XTACACS / / RADIUS / local / none) for authentication. These techniques
will be listed in an order preferable, and defined by the user for normal user authentication on the Switch,
and may contain up to eight authentication techniques. When a user attempts to access the Switch, the
Switch will select the first technique listed for authentication. If the first technique goes through its
server
hosts
and no authentication is returned, the Switch will then go to the next technique listed in the server
group for authentication, until the authentication has been verified or denied, or the list is exhausted.
Please note that user granted access to the Switch will be granted normal user privileges on the Switch.
To gain acess to admin level privileges, the user must enter the
enable admin
command and then enter a
password, which was previously configured by the administrator of the Switch.
The Access Authentication Control commands in the Command Line Interface (CLI) are listed (along
with the appropriate parameters) in the following table.
Command Parameters
enable authen_policy
disable authen_policy
show authen_policy
create authen_login
method_list_name
<string 15>
config authen_login
[default | method_list_name <string 15>] method {tacacs | xtacacs | | radius
| server_group <string 15> | local | none}
delete authen_login
method_list_name
<string 15>
show authen_login
{default | method_list_name <string 15> | all}
create authen_enable
method_list_name
<string 15>
config authen_enable
[default | method_list_name <string 15>] method {tacacs | xtacacs | | radius
| server_group <string 15> | local_enable | none}
delete authen_enable
method_list_name
<string 15>
show authen_enable
[default | method_list_name <string 15> | all]
config authen application {console | telnet | ssh | http | all] [login | enable] [default | method_list_name <string
15>]
show authen application
create authen
<string 15>
NOTE:
TACACS, XTACACS and are separate entities and are not
compatible. The Switch and the server must be configured exactly the same, using the
same protocol. (For example, if the Switch is set up for TACACS authentication, so
must be the host server.)
Содержание xStack DES-3800 Series
Страница 2: ...August 2005 651ES3828015G RECYCLABLE...
Страница 127: ...xStack DES 3800 Series Layer 3 Stackable Fast Ethernet Managed Switch CLI Manual 122 9 Active 10 Active DES 3800 4...
Страница 147: ...xStack DES 3800 Series Layer 3 Stackable Fast Ethernet Managed Switch CLI Manual 142 DES 3800 4...