EM316LNXNM-OT
Authentication, Authorization, and
Accounting
PN 1275005-100 Rev E6
80
10.1. CLI Interface
AAA may be managed through the command line interface (CLI). This section describes the useful
commands for both Radius and .
10.1.1. Display AAA Status
Use the command
show aaa
to display the current AAA status on the system. Use the command
show
aaa remote-server hosts
to display only the AAA remote hosts.
fiberdriver(config)# show aaa
AAA configuration:
Remote AAA Authentication: enabled
Remote AAA Accounting: enabled
Remote AAA Protocol: Radius
AAA remote hosts:
aaa remote-server host 1 192.168.14.12 sharedsecret 0 3 0
aaa remote-server host 2 192.168.14.102 sharedsecret2 0 3 0
10.1.2. Choosing a Protocol
Use the command
aaa protocol
to select either Radius or security protocols. Radius is
the default selection. Once the protocol is selected, all remote server hosts switch to the new protocol.
When switching between different AAA environments, delete all previous remote server hosts. (See the
"Configuring a Remote Server" section).
The protocol has two variations. The first variation is ASCII, which works with
servers that support ASCII (i.e. Cisco Secure ACS Express). The second variation is TACACS
+ PAP, which works with servers that support PAP (i.e. Tac-Plus UNIX Daemon).
Use the following commands to configure the correct AAA protocol:
•
aaa protocol radius
•
aaa protocol tacacs-ascii
•
aaa protocol tacacs-pap
Содержание EM316LNXNM-OT
Страница 174: ...EM316LNXNM OT Appendix PN 1275005 100 Rev E6 167 Access Read only CLI command volt monitor 4...
Страница 181: ......