User's Manual

232
Authentication
SecurID
Overview
If you need to reset the SecurID secret, select Tools, Reset, Reset SecurID Node Secret.
Field Descriptions
Configure the following parameters:
Accounting
Primary Host
The primary TACACS+ host that is used for accounting.
Default: None
Accounting
Secondary Host
The secondary TACACS+ host that is used for accounting, should the primary
accounting TACACS+ host fail to respond.
Default: None
Accounting Port The port number that TACACS+ listens to for accounting requests.
Default: 49
Accounting Secret The TACACS+ shared secret is used to encrypt/decrypt TACACS+ packets in
communications between two devices. The shared secret may be any
alphanumeric string. Each shared secret must be configured on both client and
server sides.
Use Alternate
Service Names
The TACACS+ service name for Telnet or SSH is normally “raccess”. The
service name for Web Manager or Device Manager is “EXEC”. In some cases,
these service names conflicted with services used by Cisco devices. If this is
the case, checking this field will cause the service name for Telnet or SSH to be
“perlecli” and the service name for Web Manager or Device Manager to be
“perleweb”.
Primary/Master
Host
The first SecurID server that is tried for user authentication.
Default: None
Replica/Slave Host If the first SecurID server does not respond to an authentication request, this is
the next SecurID server that is tried for user authentication.
Default: None
UDP Port The port number that SecurID listens to for authentication requests.
Default: 5500