Default Settings for TACACS+
This table lists the default settings for TACACS+ parameters.
Table 8: Default TACACS+ Parameters Settings
DefaultParameters
DisabledTACACS+
0
minutes
Dead timer interval
5
seconds
Timeout interval
0
minutes
Idle timer interval
testPeriodic server monitoring username
testPeriodic server monitoring password
DisabledPrivilege level support for TACACS+ authorization
Configuring TACACS+
This section describes how to configure TACACS+ on a Cisco NX-OS device.
If you are familiar with the Cisco IOS CLI, be aware that the Cisco NX-OS commands for this feature might
differ from the Cisco IOS commands that you would use.
Note
TACACS+ Server Configuration Process
Step 1 Enable TACACS+.
Step 2 Establish the TACACS+ server connections to the Cisco NX-OS device.
Step 3 Configure the secret keys for the TACACS+ servers.
Step 4 If needed, configure TACACS+ server groups with subsets of the TACACS+ servers for AAA authentication methods.
Step 5 (Optional) Configure the TCP port.
Step 6 (Optional) If needed, configure periodic TACACS+ server monitoring.
Step 7 (Optional) If TACACS+ distribution is enabled, commit the TACACS+ configuration to the fabric.
Cisco Nexus 9000 Series NX-OS Security Configuration Guide, Release 9.x
72
Configuring TACACS+
Default Settings for TACACS+