Administrator Guide

Web Tools Administrator’s Guide 187
53-1002756-01
TACACS+ management
15
TACACS+ management
TACACS+ provides user authentication and authorization using TACACS as authentication protocol.
You can add, remove, and modify settings of TACACS+ Server.
Enabling and disabling TACACS+
At least one TACACS+ server must be configured before you can enable TACACS+.
To enable or disable TACACS+, perform the following steps.
1. Open the Switch Administration window as described in “Opening the Switch Administration
window” on page 31.
2. Select the AAA Service tab.
3. To enable TACACS+, select TACACS+ from the Primary AAA Service drop-down menu.
4. Select None, Switch Database when TACACS+ Login Failed, or Switch Database when TACACS+
Login Timeout from the Secondary AAA Service menu.
NOTE
To disable TACACS+, select Switch Database from the Primary AAA Service menu and select
None from the Secondary AAA Service menu.
5. Click Apply.
Configuring TACACS+
To enable TACACS+, perform the following steps.
1. Open the Switch Administration window as described in “Opening the Switch Administration
window” on page 31.
2. Select the AAA Service tab.
3. Click Add to configure TACACS+ service.
4. Select TACACS+ from Server Type.
5. Enter the Server, Port, Timeout(s), Secret String details in the appropriate fields.
6. Select CHAP or PAP from the Authentication drop-down list.
7. Cl ick OK.
The server details display in the TACACS+ Configuration list.
8. Click Apply.
Modifying TACACS+
To change the parameters of a TACACS+ service that is already configured, perform the following
steps.