Owners manual
144 | Authentication and User Management Aruba Instant 6.4.0.2-4.1 | User Guide
Figure 43 Admin Tab: Management Authentication Parameters
3. Under Local, select any of the following options from the Authentication drop-down list:
l Internal— Select this option to specify a single set of user credentials. Enter the Username and Password for
accessing the Virtual Controller Management User Interface.
l Authentication Server— Specify one or two authentication servers to authenticate clients. If two servers are
configured, users can use them in primary or backup mode or load balancing mode. To enable load balancing,
select Enabled from the Load balancing drop-down list. For more information on load balancing, see Dynamic
Load Balancing between Two Authentication Servers on page 155.
You may also specify a RADIUSServer as one of the authentication servers along with a TACACS+ server. If a
TACACS+ server is selected, you can select the TACACS accounting checkbox for reporting management
commands.
The TACACS accounting option is available only when a TACACS+ server is specified as one of the
authentication servers.
l Authentication server w/ fallback to internal— Select this option to use both internal and external servers.
When enabled, the authentication switches to Internal if there is no response from the RADIUS server (RADIUS
server timeout). To complete this configuration, perform the following step:
a. To enable load balancing, select Enabled from the Load balancing drop-down list.
b. Specify a Username and Password.
c. Retype the password to confirm.
4. Click OK.
In the CLI
To configure an admin user:
(Instant AP)(config)# mgmt-user <username> [password]
(Instant AP)(config)# end
(Instant AP)# commit apply
To configure RADIUS or TACACS+ authentication parameters:
(Instant AP)(config)# mgmt-auth-server <authentication_server1>










