Enterasys Networks CSX7000 Manuel d'utilisateur Page 219

  • Télécharger
  • Ajouter à mon manuel
  • Imprimer
  • Page
    / 729
  • Table des matières
  • MARQUE LIVRES
  • Noté. / 5. Basé sur avis des utilisateurs
Vue de la page 218
Central Site Remote Access Switch 219
C
ONFIGURING
O
FF
-
NODE
S
ERVER
I
NFORMATION
TACACS Authentication Server
USING MANAGE MODE COMMANDS
tacacs
Displays the current TACACS off-node server configuration data.
tacacs change
Allows you to change the current TACACS off-node server configuration data. After entering
the
tacacs change
command, you will be prompted for the configuration elements you
want to change.
TACACS AUTHENTICATION SERVER CONFIGURATION ELEMENTS
IP ADDRESS
The IP address in dotted decimal notation for the TACACS Server.
UDP P
ORT NUMBER
The UDP port number used by the TACACS Server. The default value of 49 is almost always used.
N
UMBER OF ACCESS REQUEST RETRIES
The number of Access Request Retries that the system will send to the TACACS Server. The initial
default value is 3. The acceptable range is from 0 to 32,767.
T
IME BETWEEN ACCESS REQUEST RETRIES
The time between Access Request Retries sent from the system. The initial default value is 1 second.
The acceptable range is from 1 to 10,000.
TACACS
PACKET FORMAT
The TACACS format for device authentication. The default format is ID code, PIN.
TACACS AUTHENTICATION SERVER BACKGROUND INFORMATION
The Terminal Access Controller Access Control System (TACACS) is a database supported by the
CyberSWITCH. TACACS operates using two components: client code and server code. TACACS
server software is installed on a UNIX-based system connected to the CyberSWITCH network. The
client protocols allow the system to communicate with the TACACS server, ultimately
authenticating devices.
The following is a typical scenario if the TACACS Server is activated: with user level security, a
remote user will Telnet into a specified system port for user authentication. The system, in turn, will
send an access request to the primary TACACS Server. After the configured time interval the
system will send an access request retry if the primary server does not respond. After the
configured number of retries, the system will request authentication information from the
secondary server if one is configured. The connection will be released if neither server responds to
the access requests.
Note: For user level security, the CyberSWITCH’s default Telnet port number is 7000, not the
normal default (23).
Vue de la page 218
1 2 ... 214 215 216 217 218 219 220 221 222 223 224 ... 728 729

Commentaires sur ces manuels

Pas de commentaire