Network Configuration 7 - 29
Figure 7-17 AAA TACACS Policy - Authentication - Add screen
8. Set the following Authentication settings:
9. Select OK to save the changes or Exit to close the screen.
Server Id Set numerical server index (1-2) for the authentication server when added to the list of
available TACACS authentication server resources.
Host Specify the IP address or hostname of the AAA TACACS server.
Port Define or edit the port on which the AAA TACACS server listens to traffic. The port range
is 1 - 65,535. The default port is 49.
Secret Specify (and confirm) the secret (password) used for authentication between the selected
AAA TACACS server and the controller, service platform or access point. By default the
secret is displayed as asterisks.
Request Attempts Set the number of connection request attempts to the TACACS server before it times out
of the authentication session. The available range is from 1 - 10. The default is 3.
Request Timeout Specify the time for the re-transmission of request packets after an unsuccessful attempt.
The default is 3 seconds. If the set time is exceeded, the authentication session is
terminated.
Retry Timeout Factor Set the scaling of retransmission attempts from 50 - 200 seconds. The timeout at each
attempt is the function of the retry timeout factor and the attempt number. 100 (the default
value) implies a constant timeout on each retry. Smaller values indicate more aggressive
(shorter) timeouts. Larger numbers define more conservative (larger) timeouts on each
successive attempt. The default is 100.