E 15 – IronPort Systems 4108GL User Manual

Page 169

Advertising
background image

9-15

Using Passwords and TACACS+ To Protect Against Unauthorized Access

TACACS+ Authentication for Central Control of Switch Access Security

Usi
n

g P
a

sswor

ds and

TA
C

A

CS+

This example shows the default authentication configuration.

Figure 9-5. Example Listing of the Switch’s Authentication Configuration

Viewing the Switch’s Current TACACS+ Server Contact
Configuration

This command lists the timeout period, encryption key, and the IP addresses
of the first-choice and backup TACACS+ servers the switch can contact.

Syntax:

show tacacs

For example, if the switch was configured for a first-choice and two backup
TACACS+ server addresses, the default timeout period, and

paris-1 for a

(global) encryption key,

show tacacs would produce a listing similar to the

following:

Figure 9-6. Example of the Switch’s TACACS+ Configuration Listing

Configuration for login and enable access
to the switch through the switch console
port.

Configuration for login and enable access
to the switch through Telnet.

First-Choice
TACACS+ Server

Second-Choice
TACACS+ Server

Third-Choice
TACACS+ Server

Advertising