BLADE OS™ ISCLI Reference HP GbE2c L2/L3 Ethernet Blade Switch Version 5.1 Advanced Functionality Software

BLADE OS 5.1 ISCLI Reference
BMD00115, August 2009 Chapter 4: Configuration Commands
181
[default] tacacs-server port <TCP port number>
Enter the number of the TCP port to be configured, between 1 and 65000. The default is 49.
Command mode: Global configuration
tacacs-server retransmit <1-3>
Sets the number of failed authentication requests before switching to a different TACACS+
server. The default is 3 requests.
Command mode: Global configuration
tacacs-server timeout <4-15>
Sets the amount of time, in seconds, before a TACACS+ server authentication attempt is
considered to have failed. The default is 5 seconds.
Command mode: Global configuration
[no] tacacs-server user-mapping {<0-15>
user|oper|admin}
Maps a TACACS+ authorization level to a switch user level. Enter a TACACS+ authorization
level (0-15), followed by the corresponding switch user level.
Command mode: Global configuration
[no] tacacs-server backdoor
Enables or disables the TACACS+ back door for Telnet, SSH/SCP, or HTTP/HTTPS.
Enabling this feature allows you to bypass the TACACS+ servers. It is recommended that you
use Secure Backdoor to ensure the switch is secured, because Secure Backdoor disallows
access through the back door when the TACACS+ servers are responding.
The default is disabled.
To obtain the TACACS+ backdoor password for your switch, contact your IBM Service and
Support line.
Command mode: Global configuration
Table 92 TACACS+ Server Commands
Command Syntax and Usage