Users Guide

localUse the local username, password, and role entries configured with the username password role
command.
group radiusConfigure RADIUS servers using the radius-server host command.
group tacacs+Configure TACACS+ servers using the tacacs-server host command.
Configure user role on server
If a console user logs in with RADIUS or TACACS+ authentication, the role you configured for the user on the RADIUS or
TACACS+ server applies. User authentication fails if no role is configured on the authentication server.
To authenticate a user on OS10 through a TACACS+ server, configure the mandatory role with a value. This example uses Cisco
ISE as the AAA server and the TACACS server configuration is shown in the following figure. This example uses the sysadmin
role along with the corresponding privilege level 15 on the TACACS+ Server.
NOTE: OS10 supports only the VSA to assign user roles. Other VSAs are not supported.
Also, you must configure the user role on the RADIUS or TACACS+ server using the vendor-specific attribute (VSA) or the
authentication fails. The vendor ID of Dell EMC is 674. Create a VSA with Name = Dell-group-name, OID = 2, Type
= string. Valid values for Dell-group-name are:
1338
Security