D-Link DI-3660 [332/506] 2 3 2 use aaa to pr oceed ppp aut hent i f i cat i on

D-Link DI-3660 [332/506] 2 3 2 use aaa to pr oceed ppp aut hent i f i cat i on
Command Line Interface Reference Manual
332
n Login Authentication Using TACACS+
Use the aaa authentication login command with the tacacs+ method keyword to specify TACACS+ as the login
authentication method. For example, to specify TACACS+ as the method of user authentication at login when no other
method list has been defined, enter the following command:
aaa (default) authentication login tacacs+
Before you can use TACACS+ as the login authentication method, you need to configure TACACS+ service. For more
information, refer to the “Configuring TACACS+chapter.
6.1.2.3.2 Use AAA To Proceed PPP Authentification
Many users access network access servers through dialup via async or ISDN. The AAA security services facilitate a
variety of authentication methods for use on serial interfaces running PPP. Use the config-aaa authentication ppp
command to start AAA authentication no matter which of the supported PPP authentication methods you decide to use. To
configure AAA authentication methods for serial lines using PPP, use the following commands in global configuration
directory:
Step
Command Purpose
1
aaa (default) authentication ppp {list-name}
method1 [method2...] 
Create a local authentication list.
2 interface interface-type number 
Enter interface
configuration mode for the
interface to which you want to apply the
authentication list.
3
ppp (default) authentication {chap | pap | chap pap
| pap chap} {list-name}  
Apply the authentication list to a line or set of
lines.
     Example 
    1. Creat a very low authentication list 
[DEFAULT@Router /config/]#aaa 
(00)accounting         Accounting configurations parameters 
(01)authentication       Authentication configurations parameters 
…… 
Please Input the code of command to be excute(0-5):  
…… 
(03)ppp          Set authentication list for ppp 
(04)username-prompt       Text to use when prompting for a username 
Please Input the code of command to be excute(0-4):  
(00)WORD         Named authentication list 
(01)default         The default authentication list. 
Please Input the code of command to be excute(0-1):  
Please input a string:bdcom (input authentication list) 
(00)group         Use Server-group 
(01)group-restrict       If user has specified a server,this group will not be used 
(02)local         Use local username authentication 
…… 
Please Input the code of command to be excute(0-6):  
…… 
(03)radius         Use all radius server for authentication 

Содержание

Скачать