338 |341
13.3.5 TACACS Authorization Status
Supermicro switches provide an option to configure TACACS authorization status. Users can
specify one of the option Enable or Disable.
If authorization status is enabled, during TACACS+ authentication switch will also send out the
authorization request to TACACS+ server. The authorization requests are used to get privilege
levels for TACACS+ users. When authorization status is disabled, all TACACS+ authenticated
users will be logged in with default privilege level 1. When authorization status is enabled, the
TACACS+ authentication users will be logged in with privilege levels configured in TACACS+
server.
Follow the steps below to configure the TACACS authorization to be used.
Enters the configuration mode.
Configures TACACS authorization
aaa authorization group Tacacs
Exits the configuration mode.
Displays the TACACS configuration.
Optional step – saves this configuration
to be part of the startup configuration.
The “no aaa authorization group tacacs” command disables the TACACS
authorization status.
The example below shows the commands used to configure the TACACS authorization status to
be used.
SMIS# configure terminal
SMIS(config)# aaa authorization group tacacs
SMIS(config)# end
SMIS(config)# show tacacs
Server : 1
Address : 192.168.2.11
Single Connection : no
TCP port : 49