Download SMC TigerAccess
Transcript
Management Guide
TigerAccess™ EE
4.2
CLI
System Authentication
For the enhanced system security, the switch provides two authentication methods to access the switch such as Remote Authentication Dial-In User Service (RADIUS) and Terminal Access Controller Access Control System Plus (TACACS+).
4.2.1
Authentication Method
To set the system authentication method, use the following command.
Command
Mode
Description
Sets a system authentication method.
local: console access
login {local | remote} {radius |
remote: telnet/SSH access
tacacs | host | all} {enable | dis-
radius: RADIUS authentication
able}
tacacs: TACACS+ authentication
Global
host: nominal system authentication (default)
all: all types of the authentication
no login {local | remote} {radius |
tacacs | host | all}
Deletes a configured system authentication method.
no login
4.2.2
Authentication Interface
If more than 2 interfaces exist in the switch, you can set one interface to access RADIUS
or TACACS server. To set an authentication interface, use the following command.
Command
Mode
Description
Sets an authentication interface.
radius: RADIUS authentication
login {radius | tacacs} interface
INTERFACE [A.B.C.D]
tacacs: TACACS+ authentication
Global
INTERFACE: interface name
A.B.C.D: source IP address (optional)
no
login
{radius
|
tacacs}
Deletes a specified authentication interface.
interface
4.2.3
Primary Authentication Method
You can set the order of the authentication method by giving the priority to each authentication method. To set the primary authentication method, use the following command
Command
Mode
Description
Sets a system authentication method.
local: console access
login {local | remote} {radius |
tacacs | host} primary
Global
remote: telnet/SSH access
radius: RADIUS authentication
tacacs: TACACS+ authentication
host: nominal system authentication (default)
SMC7824M/VSW
47