4-11
TACACS+ Authentication
Configuring TACACS+ on the Switch
Configuring the Switch’s Authentication Methods
The aaa authentication command configures access control for the following
access methods:
â– Console
â– Telnet
â– SSH
â– Web
â– Web-based (port access)
â– Port-access (802.1X)
However, TACACS+ authentication is only used with the console, Telnet, or
SSH access methods. The command specifies whether to use a TACACS+
server or the switch’s local authentication, or no authentication in some
situations (meaning that if the primary method fails, authentication is denied).
The command also reconfigures the number of access attempts to allow in a
session if the first attempt uses an incorrect username/password pair.