4 Cyclades ACS 5000 Installation/Administration/User Guide
The following global security policies are also configurable:
• Allow SSH root access
• HTTP redirection to HTTPS
The following options for configuration of serial ports can also be enabled or disabled:
.
• Console (Telnet)
• Console (SSH)
• Console (Raw)
• Authentication required for access to serial ports
Authentication
Authentication can be performed locally or on a remote server, such as an LDAP, RADIUS, or
TACACS+ authentication server. A fallback mechanism is also provided.
Table 1.2: Authentication Methods Supported
Authentication Type Definition
None No authentication
DSView Authentication is performed with a DSView 3 server
DSView/Local DSView authentication is tried first, then Local
DSViewDownLocal Local authentication is performed only if the DSView 3 server is down
LDAP Authentication is performed with an LDAP server
LDAP/Local LDAP authentication is tried first, then Local
LDAPDownLocal Local authentication is performed only if the LDAP server is down
Local Authentication is performed locally (using the /etc/passwd file)
Local/Radius Local authentication is tried first, then RADIUS
Local/TACACS+ Local authentication is tried first, then TACACS+
Radius Authentication is performed with a Radius authentication server
Radius/Local Radius authentication is tried first, then Local
RadiusDownLocal Local authentication is performed only if the Radius server is down
TACACS+ Authentication is performed with a TACACS+ authentication server
TACACS+/Local TACACS+ authentication is tried first, then Local
TACACS+DownLocal Local authentication is tried only if the TACACS+ server is down