H3C S7500 Series Ethernet Switches Command Manual

Table Of Contents
Command Manual – AAA & RADIUS & HWTACACS & EAD
H3C S7500 Series Ethernet Switches
Chapter 1 AAA & RADIUS & HWTACACS
Configuration Commands
1-61
View
HWTACACS scheme view
Parameters
ip-address: IP address of the server, a valid unicast address in dotted decimal format.
port: Port number of the server, which is in the range 1 to 65,535 and defaults to 49.
Description
Use the primary authentication command to configure a TACACS authentication
server.
Use the undo primary authentication command to delete the configured
authentication server.
By default, the IP address of TACACS authentication server is 0.0.0.0.
Note that:
z You cannot assign the same IP address to both primary and secondary
authentication servers; otherwise, unsuccessful operation is prompted.
z If you repeatedly use this command, the latest configuration overwrites the
previous one.
z You can remove an authentication server only when it is not being used by any
active TCP connections, and the removal impacts only packets forwarded
afterwards.
Related commands: display hwtacacs.
Examples
# Configure a primary authentication server.
<H3C> system-view
System View: return to User View with Ctrl+Z.
[H3C] hwtacacs scheme test1
[H3C-hwtacacs-test1] primary authentication 10.163.155.13 49
1.3.10 primary authorization
Syntax
primary authorization ip-address [ port ]
undo primary authorization
View
HWTACACS scheme view