MRV Communications LX-4000 Series Informacje Techniczne Strona 74

  • Pobierz
  • Dodaj do moich podręczników
  • Drukuj
Przeglądanie stron 73
Performing the Initial Setup
Specifying the TACACS+ Period 2-33
Specifying the TACACS+ Period
The TACACS+ period is the interval at which the LX unit will
update the TACACS+ accounting server with the status of each
TACACS+ user. This value is specified in minutes.
X To specify the TACACS+ period
1. Access the AAA Command Mode on the LX.
(See “Command Mode Descriptions” on page 1-5 for
information about accessing the AAA Command Mode.)
2. Use the tacacs+ period command to specify the
TACACS+ period:
Example AAA:0 >>tacacs+ period 10
Setting Up RSA SecurID
RSA SecurID operation requires the use of a node secret. The
secret is only transferred after the first successful authentication
between the LX and the RSA ACE/Server. Subsequent
communication between the LX and the RSA ACE/Server relies
on an exchange of the node secret to verify one another's
authenticity. The secret is now saved when the secret is first
sent. It is now saved permanently through reboot. At the first
successful authentication attempt with the RSA server, the file is
created and written to the /config/securid_v5 file in flash.
You can implement RSA SecurID authentication at the server
level and for specific interfaces and asynchronous ports on the
LX unit. You must implement RSA SecurID authentication at the
server level before you can implement it on specific interfaces
and asynchronous ports on the LX unit.
Under RSA SecurID authentication, the user is required to enter
a user name and a PIN number plus the current token code from
his or her RSA SecurID server. The LX unit transmits the
information to the RSA ACE/Server, which approves access
when the information is validated.
RSA SecurID supports both DES and SDI encryption.
PPP CHAP is not
supported with
authentication
SecurID.
Przeglądanie stron 73
1 2 ... 69 70 71 72 73 74 75 76 77 78 79 ... 691 692

Komentarze do niniejszej Instrukcji

Brak uwag