Cisco Nexus 5000 Series Switch CLI Software Configuration Guide, NX-OS 4.0(1a)N1 (OL-16597-01, January 2009)
Send feedback to nx5000-docfeedback@cisco.com
18-4
Cisco Nexus 5000 Series Switch CLI Software Configuration Guide
OL-16597-01
Chapter 18 Configuring TACACS+
Prerequisites for TACACS+
Prerequisites for TACACS+
TACACS+ has the following prerequisites:
• Obtain the IPv4 or IPv6 addresses or host names for the TACACS+ servers.
• Obtain the preshared keys from the TACACS+ servers, if any.
• Ensure that the Nexus 5000 Series switch is configured as a TACACS+ client of the AAA servers.
Guidelines and Limitations
TACACS+ has the following guidelines and limitations:
• You can configure a maximum of 64 TACACS+ servers on the Nexus 5000 Series switch.
Configuring TACACS+
This section includes the following topics:
• TACACS+ Server Configuration Process, page 18-4
• Enabling TACACS+, page 18-5
• Configuring TACACS+ Server Hosts, page 18-5
• Configuring Global Preshared Keys, page 18-6
• Configuring TACACS+ Server Preshared Keys, page 18-7
• Configuring TACACS+ Server Groups, page 18-7
• Specifying a TACACS+ Server at Login, page 18-8
• Configuring the Global TACACS+ Timeout Interval, page 18-9
• Configuring the Timeout Interval for a Server, page 18-9
• Configuring TCP Ports, page 18-10
• Configuring Periodic TACACS+ Server Monitoring, page 18-11
• Configuring the Dead-Time Interval, page 18-12
• Manually Monitoring TACACS+ Servers or Groups, page 18-12
• Disabling TACACS+, page 18-12
TACACS+ Server Configuration Process
To configure TACACS+ servers, perform this task:
Step 1 Enable TACACS+.
See the “Enabling TACACS+” section on page 18-5.
Step 2 Establish the TACACS+ server connections to the Nexus 5000 Series switch.
See the “Configuring TACACS+ Server Hosts” section on page 18-5.