MRV Communications LX-4000 Series Informacje Techniczne Strona 67

  • Pobierz
  • Dodaj do moich podręczników
  • Drukuj
Przeglądanie stron 66
2-26 Installing and Configuring a TACACS+ Server on a Network-Based Host
LX Series Configuration Guide
Installing and Configuring a TACACS+ Server on
a Network-Based Host
Before you can configure TACACS+ on your LX unit, you must
configure a TACACS+ server on your network.
In general, TACACS+ server implementations are available on
the Internet. These implementations generally use a daemon
process that interacts with TACACS+ clients (located on LX units
and on other remote access devices).
The daemon uses a list of clients and associated secrets that it
shares with these clients. The per-client secret is used to
encrypt and validate communications between the TACACS+
server and the client. The file used to keep the client list and
secrets is the “clients” file.
Another file used by the daemon to store the users that are
authenticated is the “users” file. The “users” file contains the
TACACS+ attributes associated with a specific user. As a
minimum, this file must contain the user’s username, password
(depending on the TACACS+ server used), and Service-type.
To configure the TACACS+ server, see your TACACS+ host
documentation.
X To specify the TACACS+ server authentication settings
on the LX unit
1. Check the primary TACACS+ Server host to ensure that
the TACACS+ server client database has been configured.
2. Access the AAA Command Mode on the LX. (See
“Command Mode Descriptions” on page 1-5 for information
about accessing the AAA Command Mode.)
3. Use the tacacs+ primary authentication server
address command to specify the IP address of the
TACACS+ primary authentication server.
Example AAA:0 >> tacacs+ primary authentication server
address 149.19.87.89
Przeglądanie stron 66
1 2 ... 62 63 64 65 66 67 68 69 70 71 72 ... 691 692

Komentarze do niniejszej Instrukcji

Brak uwag