DXS-3326GSR Stackable Gigabit Layer 3 Switch
NOTE:
TACACS, XTACACS and TACACS+ are separate entities and are
not compatible. The Switch and the server must be configured exactly the
same, using the same protocol. (For example, if the Switch is set up for
TACACS authentication, so must be the host server.)
The Access Authentication Control commands in the Command Line Interface (CLI) are listed (along with the appropriate
parameters) in the following table.
Command Parameters
enable authen_policy
disable authen_policy
show authen_policy
create authen_login
method_list_name
<string 15>
config authen_login [default | method_list_name <string 15>] method {tacacs |
xtacacs | tacacs+ | radius | server_group <string 15> | local |
none}
<string 15>
{default | method_list_name <string 15> | all}
<string 15>
[default | method_list_name <string 15>] method {tacacs |
xtacacs | tacacs+ | radius | server_group <string 15> |
local_enable | none}
<string 15>
show authen_enable [default | method_list_name <string 15> | all]
config authen application {console | telnet | ssh | http | all] [login | enable] [default |
method_list_name <string 15>]
show authen application
create authen server_group <string 15>
[tacacs | xtacacs | tacacs+ | radius | <string 15>] [add | delete]
server_host <ipaddr> protocol [tacacs | xtacacs | tacacs+ |
radius]
<string 15>
show authen server_group {<string 15>}
create authen server_host <ipaddr> protocol [tacacs | xtacacs | tacacs+ | radius] {port
<int 1-65535> | key [<key_string 254> | none] | timeout <int 1-
255> | retransmit <int 1-255>}
config authen server_host <ipaddr> protocol [tacacs | xtacacs | tacacs+ | radius] {port
<int 1-65535> | key [<key_string 254> | none] | timeout <int 1-
255> | retransmit <int 1-255>}
delete authen_login
method_list_name
show authen_login
create authen_enable
method_list_name
config authen_enable
delete authen_enable
method_list_name
config authen server_group
delete authen server_group
163