5-63
Basic Configuration
5.9.9. TACACS Parameters
The TACACS Configuration Menus offer the following options:
• Enable: Enables/disables the TACACS feature at the Network Port. (Default = Off)
• PrimaryAddress: The IP address or domain name for your primary TACACS
server. (Default = undefined)
• SecondaryAddress: The IP address or domain name for your secondary, fallback
TACACS server. (Default = undefined)
• SecretWord: The shared TACACS Secret Word for both TACACS servers.
(Default = undefined)
• FallbackTimer: Determines how long the unit will attempt to contact the primary
TACACS Server before falling back to the secondary server.
(Default = 15 Seconds)
• FallbackLocal: Determines whether or not the TSM/RSM will fallback to its own
username directory when an authentication attempt fails. When enabled, the unit
will first attempt to authenticate the password by checking the TACACS Server. If
this fails, the unit will then attempt to authenticate the password by checking its own
internal username directory. This parameter offers three options:
Off: Fallback Local is disabled (Default)
On(AllFailures): Fallback Local is enabled, and the unit will fallback to it's own
internal user directory when it cannot contact the TACACS Server, or when a
password or username does not match the TACACS Server.
On(TransportFailure): Fallback Local is enabled, but the unit will only fallback
to it's own internal user directory when it cannot contact the TACACS Server.
• AuthenticationPort: The port number for the TACACS function. (Default = 49)
• DefaultUserAccess: When enabled, allows TACACS users to access the unit
without first defining a TACACS user account on the TSM/RSM. When new
TACACS users access the unit, they will inherit the default Access Level, Port
Access and Service Access defined via the items listed below: (Default = On)
Enable: Enables/disables the Default User Access function. (Default = On)
AccessLevel: Determines the default Access Level setting for new TACACS
users. This option can set the default access level for new TACACS users to
"Administrator", "SuperUser", "User" or "ViewOnly." For more information, please
refer to Section 5.4.1 and Section 17.2. (Default = User)