Reference Guide

Table Of Contents
tacacs-server timeout
Use this command to set the timeout value for communication with the TACACS+ servers. The timeout
parameter has a range of 1-30 (in seconds). If you do not specify a timeout value, the command sets the
global timeout to the default value. TACACS+ servers that do not use the global timeout will retain their
configured timeout values.
Default 5
Format tacacs-server timeout timeout
Mode Global Config
no tacacs-server timeout
Use this command to restore the default timeout value for all TACACS servers.
Format no tacacs-server timeout
Mode Global Config
key
Use this command in TACACS Configuration mode to specify the authentication and encryption key for
all TACACS communications between the device and the TACACS server. This key must match the key
used on the TACACS daemon. The key-string parameter specifies the key name. For an empty string use
“ ”. (Range: 0 - 128 characters).
Text-based configuration supports TACACS server’s secrets in encrypted and non-encrypted format.
When you save the configuration, these secret keys are stored in encrypted format only. If you want to
enter the key in encrypted format, enter the key along with the encrypted keyword. In the show
running-config command’s display, these secret keys are displayed in encrypted format. You cannot
show these keys in plain text format.
Format
key [key-string | encrypted key-string]
Mode TACACS Config
keystring
Use this command in TACACS Server Configuration mode to set the TACACS+ server-specific
authentication encryption key used for all TACACS+ communications between the TACACS+ server and
the client.
Format
keystring
Mode TACACS Server Config
The following shows an example of the command.
(Extreme 220) (Config) #tacacs-server host 1.1.1.1
(Extreme 220)(Tacacs)#keystring
Management Commands
ExtremeSwitching 200 Series: Command Reference Guide for version 01 .02.04.0007 127