User manual
Chapter 5: Managing Device Security | 153
GS108T and GS110TP Smart Switch Software Administration Manual
Configuring TACACS+
TACACS+ provides a centralized user management system, while still retaining consistency
with RADIUS and other authentication processes. TACACS+ provides the following services:
• Authentication: Provides authentication during login and via user names and
user-defined passwords.
• Authorization:
Performed at login. When the authentication session is completed, an
authorization session starts using the authenticated user name. The TACACS+ server
checks the user privileges.
The TACACS+ protocol ensures network security through encrypted protocol exchanges
between the device and TACACS+ server.
The TACACS+ folder contains links to the following features:
• Configuring TACACS+ on page 153
• TACACS+ Server Configuration on page 154
TACACS+ Configuration
The TACACS+ Configuration page contains the TACACS+ settings for communication
between the switch and the TACACS+ server you configure via the inband management
port.
To display the TACACS+ Configuration page, click Security Management Security, and
then click the TACACS+ TACACS+ Configuration link.
To configure global TACACS+ settings:
1. In the Key String field, specify the authentication and encryption key for TACACS+
communications between the GS108T or GS110TP and the TACACS+ server. The valid
range is 0–128 characters. The key must match the key configured on the TACACS+
server.
2. In the Connection Timeout field, specify the maximum number of seconds allowed to
establish a TCP connection between the GS108T or GS110TP and the TACACS+ server.
The valid range is 1–30 seconds.