Cisco Nexus 5000 Series Switch CLI Software Configuration Guide, NX-OS 4.0(1a)N1 (OL-16597-01, January 2009)

Send feedback to nx5000-docfeedback@cisco.com
18-4
Cisco Nexus 5000 Series Switch CLI Software Configuration Guide
OL-16597-01
Chapter 18 Configuring TACACS+
Prerequisites for TACACS+
Prerequisites for TACACS+
TACACS+ has the following prerequisites:
Obtain the IPv4 or IPv6 addresses or host names for the TACACS+ servers.
Obtain the preshared keys from the TACACS+ servers, if any.
Ensure that the Nexus 5000 Series switch is configured as a TACACS+ client of the AAA servers.
Guidelines and Limitations
TACACS+ has the following guidelines and limitations:
You can configure a maximum of 64 TACACS+ servers on the Nexus 5000 Series switch.
Configuring TACACS+
This section includes the following topics:
TACACS+ Server Configuration Process, page 18-4
Enabling TACACS+, page 18-5
Configuring TACACS+ Server Hosts, page 18-5
Configuring Global Preshared Keys, page 18-6
Configuring TACACS+ Server Preshared Keys, page 18-7
Configuring TACACS+ Server Groups, page 18-7
Specifying a TACACS+ Server at Login, page 18-8
Configuring the Global TACACS+ Timeout Interval, page 18-9
Configuring the Timeout Interval for a Server, page 18-9
Configuring TCP Ports, page 18-10
Configuring Periodic TACACS+ Server Monitoring, page 18-11
Configuring the Dead-Time Interval, page 18-12
Manually Monitoring TACACS+ Servers or Groups, page 18-12
Disabling TACACS+, page 18-12
TACACS+ Server Configuration Process
To configure TACACS+ servers, perform this task:
Step 1 Enable TACACS+.
See the “Enabling TACACS+” section on page 18-5.
Step 2 Establish the TACACS+ server connections to the Nexus 5000 Series switch.
See the “Configuring TACACS+ Server Hosts” section on page 18-5.