3Com Switch 8800 Family Firewall Module Configuration and Command Reference Guide
HWTACACS Configuration Commands 269
port: Port number of the server, which is in the range 1 to 65,535 and defaults to
49.
Description
Use the secondary authentication command to configure a secondary TACACS
authentication server.
Use the undo secondary authentication command to delete the configured
secondary authentication server.
By default, IP address of TACACS authentication server is 0.0.0.0.
You are not allowed to assign the same IP address to both primary and secondary
authentication servers.
You can configure only one primary authentication server in a HWTACACS
scheme. If you repeatedly use this command, the latest configuration replaces the
previous one.
You can remove an authentication server only when it is not being used by any
active TCP connections, and the removal impacts only packets forwarded
afterwards.
Related command: display hwtacacs.
Example
# Configure a secondary authentication server.
[SecBlade_FW] hwtacacs scheme test1
[SecBlade_FW-hwtacacs-test1] secondary authentication 10.163.155.13 49
secondary authorization Syntax
secondary authorization ip-address [ port ]
undo secondary authorization
View
HWTACACS view
Parameter
ip-address: IP address of the server, a legal unicast address in dotted decimal
format.
port: Port number of the server, ranging from 1 to 65535. By default, it is 49.
Description
Use the secondary authorization command to configure a secondary TACACS
authorization server.
Use the .undo secondary authorization command to delete the configured
secondary authorization server.
By default, IP address of TACACS authorization server is 0.0.0.0.