![Huawei Quidway S5600 Скачать руководство пользователя страница 565](http://html.mh-extra.com/html/huawei/quidway-s5600/quidway-s5600_operation-manual_169841565.webp)
Operation Manual – AAA & RADIUS & HWTACACS & EAD
Quidway S5600 Series Ethernet Switches-Release 1510
Chapter 1 AAA & RADIUS & HWTACACS
Configuration
Huawei Technologies Proprietary
1-35
1.5.2 Configuring HWTACACS Authentication Servers
Table 1-25
Configure HWTACACS authentication servers
Operation
Command
Description
Enter system view
system-view
—
Create a HWTACACS
scheme and enter its
view
hwtacacs scheme
hwtacacs-scheme-name
Required
By default, no
HWTACACS scheme
exists.
Set the IP address and
port number of the
primary TACACS
authentication server
primary authentication
ip-address
[
port
]
Required
By default, the IP
address of the primary
authentication server is
0.0.0.0, and the port
number is 0.
Set the IP address and
port number of the
secondary TACACS
authentication server
secondary authentication
ip-address
[
port
]
Required
By default, the IP
address of the
secondary
authentication server is
0.0.0.0, and the port
number is 0.
Caution:
z
The primary and secondary authentication servers cannot use the same IP address.
Otherwise, the system will prompt unsuccessful configuration.
z
You can remove a server only when it is not used by any active TCP connection for
sending authentication packets.
1.5.3 Configuring HWTACACS Authorization Servers
Table 1-26
Configure TACACS authorization servers
Operation
Command
Description
Enter system view
system-view
—
Create a HWTACACS
scheme and enter its
view
hwtacacs scheme
hwtacacs-scheme-name
Required
By default, no
HWTACACS scheme
exists.