Specifications

AAA-TACACS-POLICY 24 - 9
• authorization server <1-2> retry-timeout-factor <50-200>
• authorization server <1-2> timeout <3-5> {attempts <1-3>}
• authorization server preference [authenticated-server-host|authenticated-server-
number|none]
Examples
rfs7000-37FABE(config-aaa-tacacs-policy-testppolicy)#authorization allow-privileged-
commands
rfs7000-37FABE(config-aaa-tacacs-policy-testppolicy)#
Related Commands
server <1-2> Configures a RADIUS authorization server. Up to 2 RADIUS servers can be configured
<1-2> – Specify the RADIUS server index from 1 - 2.
retry-timeout-factor
<50-200>
Configures the scaling of timeouts between two consecutive RADIUS authorization retries
<50-200> – Specify the scaling factor from 50 - 200.
A value of 100 indicates the time gap between two consecutive retires remains the
same irrespective of the number of retries.
A value lesser than 100 indicates the time gap between two consecutive retries reduc-
es with each successive retry attempt.
A value greater than 100 indicates the time gap between two consecutive
retries increases with each successive retry attempt.
server <1-2> Configures a RADIUS authorization server. Up to 2 RADIUS servers can be configured
<1-2> – Specify the RADIUS server index from 1- 2.
timeout <3-5> Configures the timeout, in seconds, for each request sent to the RADIUS server. This is the
time allowed to elapse before another request is sent to the RADIUS server. If a response is
received from the RADIUS server within this time, no retry is attempted.
<3-5> – Specify a value from 3 - 5 seconds.
attempts <1-3> Optional. Indicates the number of retry attempts to make before giving up
<1-3> – Specify a value from 1 - 3.
preference Configures the authorization server preference
authenticated-server-
host
Sets the authentication server as the authorization server
This parameter indicates the same server is used for authentication and authorization+. The
server is referred to by its hostname.
authenticated-server-
number
Sets the authentication server as the authorization server
This parameter indicates the same server is used for authentication and authorization. The
server is referred to by its index or number.
none Indicates the authorization server is independent of the authentication
no Resets values or disables commands