
Enterasys Xpedition User Reference Manual 297
Configuring XP Access Security
To monitor RADIUS, enter the following commands in Enable mode:
Configuring TACACS
In addition, Enable mode access to the XP can be made secure by enabling a Terminal
Access Controller Access Control System (TACACS) client. Without TACACS, TACACS
Plus, or RADIUS enabled, only local password authentication is performed on the XP. The
TACACS client provides user name and password authentication for Enable mode. A
TACACS server responds to the XP TACACS client to provide authentication.
You can configure up to five TACACS server targets on the XP. A timeout is set to tell the
XP how long to wait for a response from TACACS servers.
To configure TACACS security, enter the following commands in the Configure mode:
Monitoring TACACS
You can monitor TACACS configuration and statistics within the XP.
To monitor TACACS, enter the following commands in Enable mode:
Configuring TACACS Plus
You can secure login or Enable mode access to the XP by enabling a TACACS Plus client.
A TACACS Plus server responds to the XP TACACS Plus client to provide authentication.
Show RADIUS server statistics.
radius show stats
Show all RADIUS parameters.
radius show all
Specify a TACACS server.
tacacs set server <hostname or IP-addr>
Set the TACACS time to wait for a
TACACS server reply.
tacacs set timeout <number>
Determine XP action if no server
responds.
tacacs set last-resort password|succeed
Enable TACACS.
tacacs enable
Show TACACS server statistics.
tacacs show stats
Show all TACACS parameters.
tacacs show all
Komentáře k této Příručce