Dell PowerEdge FX2/FX2s User Manual

Page 409

Advertising
background image

• radius: use the RADIUS servers configured with the

radius-server host command.

• tacacs+: use the TACACS+ servers configured with the

tacacs-server host command.

... method4

(OPTIONAL) Enter up to four additional methods. In the
event of a “no response” from the first method, Dell
Networking Operating System (OS) applies the next
configured method (up to four configured methods).

Defaults

Not configured (that is, no authentication is performed).

Command
Modes

CONFIGURATION

Command
History

Version 9.4(0.0)

Supported on the FN I/O aggregator.

Usage
Information

By default, the locally configured username password is used. If you configure aaa
authentication login default, Dell Networking Operating System (OS) uses
the methods this command defines for login instead.

Methods configured with the aaa authentication login command are
evaluated in the order they are configured. If users encounter an error with the first
method listed, Dell Networking Operating System (OS) applies the next method
configured. If users fail the first method listed, no other methods are applied. The
only exception is the local method. If the user’s name is not listed in the local
database, the next method is applied. If the correct user name/password
combination is not entered, the user is not allowed access to the switch.

NOTE: If authentication fails using the primary method, Dell Networking
Operating System (OS) employs the second method (or third method, if
necessary) automatically. For example, if the TACACS+ server is reachable, but
the server key is invalid, Dell Networking Operating System (OS) proceeds to
the next authentication method. The TACACS+ is incorrect, but the user is still
authenticated by the secondary method.

After configuring the aaa authentication login command, configure the
login authentication command to enable the authentication scheme on
terminal lines.

Connections to the SSH server work with the following login mechanisms: local,
radius, and tacacs.

Related
Commands

login authentication

— enables AAA login authentication on the terminal lines.

radius-server host

— specifies a RADIUS server host.

tacacs-server host

— specifies a TACACS+ server host.

409

Advertising