Nortel Networks 43W7774 Switch User Manual


 
Alteon OS Command Reference
The Configuration Menu
18343W7774, May 2007
Table 6-6 TACACS+ Server Menu Options (/cfg/sys/tacacs)
Command Syntax and Usage
prisrv <IP address>
Defines the primary TACACS+ server address.
secsrv <IP address>
Defines the secondary TACACS+ server address.
secret <1-32 character secret>
This is the shared secret between the switch and the TACACS+ server(s).
secret2 <1-32 character secret>
This is the secondary shared secret between the switch and the TACACS+ server(s).
port <TACACS port configure, default 49>
Enter the number of the TCP port to be configured, between 1 - 65000. The default is 49.
retries <TACACS server retries, 1-3>
Sets the number of failed authentication requests before switching to a different TACACS+ server.
The default is 3 requests.
timeout <TACACS server timeout seconds, 4-15>
Sets the amount of time, in seconds, before a TACACS+ server authentication attempt is consid-
ered to have failed. The default is 5 seconds.
telnet disable|enable
Enables or disables the TACACS+ back door for telnet. The telnet command also applies to
SSH/SCP connections, and the Browser-Based Interface (BBI). The default is disabled.
To obtain the TACACS+ backdoor password for your GbESM, contact your IBM Service and
Support line.
secbd enable|disable
Enables or disables TACACS+ secure backdoor access through telnet, SSH, or HTTP.
cmap enable|disable
Enables or disables TACACS+ privilege-level mapping.
The default value is disabled.
passch enable|disable
Enables or disables TACACS+ password change.
The default value is disabled.
chpass_p
Configures the password for the primary TACACS+ server. The CLI will prompt you for input.
chpass_s
Configures the password for the secondary TACACS+ server. The CLI will prompt you for input.