
The system view is displayed.
Step 2
(Optional) Run:
hwtacacs enable
HWTACACS is enabled.
Step 3
Run:
hwtacacs-server template
template-name
An HWTACACS server template is created and the HWTACACS server template view is
displayed.
Step 4
Run:
hwtacacs-server authentication
ip-address
[
port
] [
public-net
|
vpn-instance
vpn-
instance-name
]
The IP address of the primary HWTACACS authentication server is specified.
By default, the IP address of the primary HWTACACS authentication server is 0.0.0.0 and its
port number is 0, and the primary HWTACACS authentication server is not bound to any VPN
instance.
Step 5
(Optional) Run:
hwtacacs-server authentication
ip-address
[
port
] [
public-net
|
vpn-instance
vpn-
instance-name
]
secondary
The IP address of the secondary HWTACACS authentication server is specified.
By default, the IP address of the secondary HWTACACS authentication server is 0.0.0.0 and
its port number is 0, and the secondary HWTACACS authentication server is not bound to any
VPN instance.
Step 6
Run:
hwtacacs-server authorization
ip-address
[
port
] [
public-net
|
vpn-instance
vpn-
instance-name
]
The IP address of the primary HWTACACS authorization server is specified.
By default, the IP address of the primary HWTACACS authorization server is 0.0.0.0 and its
port number is 0, and the primary HWTACACS authorization server is not bound to any VPN
instance.
Step 7
(Optional) Run:
hwtacacs-server authorization
ip-address
[
port
] [
public-net
|
vpn-instance
vpn-
instance-name
]
secondary
The IP address of the secondary HWTACACS authorization server is specified.
By default, the IP address of the secondary HWTACACS authorization server is 0.0.0.0 and its
port number is 0, and the secondary HWTACACS authorization server is not bound to any VPN
instance.
Step 8
Run:
hwtacacs-server accounting
ip-address
[
port
] [
public-net
|
vpn-instance
vpn-
instance-name
]
The IP address of the primary HWTACACS accounting server is specified.
By default, the IP address of the primary HWTACACS accounting server is 0.0.0.0 and its port
number is 0, and the primary HWTACACS accounting server is not bound to any VPN instance.
Huawei AR1200-S Series Enterprise Routers
Configuration Guide - Security
1 AAA Configuration
Issue 02 (2012-03-30)
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
23