Allied Telesis AT-9000/28POE Switch User Manual


  Open as PDF
of 1480
 
Chapter 88: RADIUS and TACACS+ Clients
1370
Managing the TACACS+ Client
The following subsections describe how to manage the TACACS+ client:
“Adding IP Addresses of TACACS+ Servers” next
“Specifying TACACS+ Accounting” on page 1371
“Deleting IP Addresses of TACACS+ Servers” on page 1372
“Removing the Accounting Method List” on page 1371
“Displaying the TACACS+ Client” on page 1372
Adding IP
Addresses of
TACACS+
Servers
The TACACS+ client can store the IP addresses of three TACACS+
servers on your network. The order that you add an IP address determines
its order on the switch. For instance, the first IP address that you add
becomes server one, the second IP address that you add becomes server
two, and the third IP address that you add becomes server three. Also,
when you remove an IP address from the switch, the IP addresses below
it are moved up. For example, if you make the following assignments:
server one is 186.178.11.154
server two is 186.178.11.156
server three is 186.178.11.158
If you delete the IP address of 186.178.11.154 for server one in the list,
the server two IP address of 186.178.11.156 moves up to the server one
position, and the IP address of 186.178.11.158 moves up to the server two
position. As a result, the next server address that you add to the switch is
added to the bottom of the list and becomes server three.
Use the TACACS-SERVER HOST command in the Global Configuration
mode command to add an IP address of a server to the client. Here is the
format of the command:
tacacs-server host
ipaddress
key
value
You can add only one IP address at a time with this command.
The HOST parameter specifies an IP address of a TACACS+ server.
The KEY parameter specifies the secret key of a TACACS+ server. The
maximum length is 40 characters. Special characters are allowed, but
spaces are not permitted.