Qtech QSW-3300-28F-AC-AC [165/693] Tacacs server keystring

Qtech QSW-3300-28F-AC-AC [165/693] Tacacs server keystring
TACACS+ Commands
Software User Manual
CLI Command Reference
Page 182
no tacacs-server key
Use the no tacacs-server key command to disable the authentication and encryption key for all TACACS+
communications between the switch and the TACACS+ daemon. The
key-string parameter has a range of 0 -
128 characters This key must match the key used on the TACACS+ daemon.
tacacs-server keystring
Use the tacacs-server keystring command to set the global authentication encryption key used for all
TACACS+ communications between the TACACS+ server and the client.
Example:
The following shows an example of the CLI command.
(Switching)(Config)#tacacs-server keystring
Enter tacacs key:********
Re-enter tacacs key:********
tacacs-server source-interface
Use this command in Global Configuration mode to configure the source interface (Source IP address) for
TACACS+ server configuration. The selected source-interface IP address is used for filling the IP header of
management protocol packets. This allows security devices (firewalls) to identify the source packets coming
from the specific switch.
If a source-interface is not specified, the primary IP address of the originating (outbound) interface is used as
the source address.
Example:
The following shows an example of the command.
(Config)#tacacs-server source-interface loopback 0
(Config)#tacacs-server source-interface 1/0/1
Format
no tacacs-server key key-string
Mode Global Config
Format
tacacs-server keystring
Mode Global Config
Format
tacacs-server source-interface {unit/slot/port|loopback loopback-id|vlan vlan-id}
Mode Global Config
Parameter Description
unit/slot/port The unit identifier assigned to the switch, in
unit/slot/port
format.
loopback-id The loopback interface. The range of the loopback ID is 0 to 7.
vlan-id Configures the VLAN interface to use as the source IP address. The range of the VLAN ID
is 1 to 4093.

Содержание

Скачать