АМАТЕК AN-SGM28P24-400 [29/322] Tacacs authentication authorization

АМАТЕК AN-SGM28P24-400 [29/322] Tacacs authentication authorization
28 / 322
no username [user-name]
Delete one or all of the
usersIf you don't input a
parameter, it means deleting
all users, if the input
parameter represents the user
who deletes a specified user
name
Global configuration
mode
show running-config
Viewing the current
configuration of the system,
you can see the
configuration of multi user
management
Privileged mode
2.1.2 TACACS+ authentication authorization
TACACS+ authentication and authorization provide more strict user rights management, not
only to verify the legitimacy of users, but also to authorize the commandAfter opening the
TACACS+ authentication, the user first needs to verify the username and password through the
TACACS+ server when accessing the switch. Only when the user name and password are correct
and consistent can they pass the verificationThe user can access the switch after verification
TACACS+ also divides the user's permissions into two levels: ordinary users and privileged
usersOrdinary users can only stay in the ordinary mode of the CLI command line interface, and
privileged users can access all the patterns of the CLI command line interfaceOn the basis of
permission level, it also sets the command execution authority, and the user enters a command
(except enable, end and exit), which must be verified on the TACACS+ server, and the
verification failure will not be executed
The TACACS+ authentication and authorization function is only applied to Telnet and SSH
terminals, and does not control the Console terminalThe user name and password need to be
verified when accessing the switch through the Telnet or SSH terminal. Only the user name and
password are verified before they can access the CLIWhen SSH is accessed, only privileged
users can pass itTACACS+ authentication is also applied to WEB login, but only verify
password privilege permissions, do not command authorization
By default, the switch TACACS+ is not enabled, the Telnet, SSH or WEB landing using
multi user management function, open the TACACS+ function, user management function can

Содержание

Похожие устройства

Скачать
Случайные обсуждения