Authentication
Configuring on the Switch
Name
Default
Range
key <
key-string
>
none (null) n/a
Specifies the optional, global “encryption key” that is also assigned in the server(s) that the switch will access
for authentication. This option is subordinate to any “per-server” encryption keys you assign, and applies only to
accessing servers for which you have not given the switch a “per-server” key. (See the
host <
ip-addr
> [key
<
key-string
>
entry at the beginning of this table.)
For more on the encryption key, see “Using the Encryption Key” on page 5-23 and the documentation provided with your
server application.
timeout <1 - 255>
5 sec
1 - 255 sec
Specifies how long the switch waits for a server to respond to an authentication request. If the switch does
not detect a response within the timeout period, it initiates a new request to the next server in the list. If all
servers in the list fail to respond within the timeout period, the switch uses either local authentication (if
configured) or denies access (if
none
configured for local authentication).
Adding, Removing, or Changing the Priority of a Server.
Suppose that the switch was already configured to use servers at
10.28.227.10 and 10.28.227.15. In this case, 10.28.227.15 was entered first, and
so is listed as the first-choice server:
First-Choice Server
Figure 5-4. Example of the Switch with Two Server Addresses Configured
To move the “first-choice” status from the “15” server to the “10” server, use
the
no tacacs-server host <
ip-addr
>
command to delete both servers, then use
tacacs-server host <
ip-addr
>
to re-enter the “10” server first, then the “15” server.
The servers would then be listed with the new “first-choice” server, that is:
5-18
Содержание J8697A
Страница 1: ...6200yl Access Security Guide 5400zl 3500yl ProCurve Switches K 11 XX www procurve com ...
Страница 2: ......
Страница 22: ...Product Documentation Feature Index xx ...
Страница 55: ...Configuring Username and Password Security Front Panel Security 2 21 ...
Страница 56: ...Configuring Username and Password Security Front Panel Security 2 22 ...
Страница 58: ...Virus Throttling Contents Operating Notes 3 30 Connection Rate Log and Trap Messages 3 31 3 2 ...
Страница 88: ...Virus Throttling Connection Rate Log and Trap Messages This page is intentionally unused 3 32 ...
Страница 118: ...Web and MAC Authentication Client Status This page intentionally unused 4 30 ...
Страница 230: ...Configuring Secure Socket Layer SSL Common Errors in SSL setup This page is intentionally unused 8 22 ...
Страница 356: ...Configuring and Monitoring Port Security Operating Notes for Port Security 11 44 ...
Страница 370: ...Using Authorized IP Managers Operating Notes This page is intentionally unused 12 14 ...
Страница 388: ...10 Index ...
Страница 389: ......