Service manual

Chapter 3: Security 35
To configure authentication servers:
1. Execute the following command to configure authentication server parameters. Refer to Table
3.2 for authentication servers parameters.
cli> config security authentication [parameter] <value>
2. Activate and save your configuration.
NOTE: If IPv6 is enabled, then IP addresses in Table 3.2 can be entered in IPv6 format.
None
(Available for serial port
authentication only.)
none Not a valid option when the serial port is configured for
Power Management protocol. The system defaults to Local
if no authentication type is selected.
Table 3.2: Authentication Servers Parameters
Authentication
Server
Parameter Value
Kerberos krbdomain
krbserver
<domain name>
<n.n.n.n>
LDAP ldapbasedomain
ldapserver
<ldapbasedomain>
<n.n.n.n>
NIS nisdomain
nisserver
<domain name>
<n.n.n.n>
Radius radiusacctsvr1
radiusacctsvr2
radiusauthsvr1
radiusauthsvr2
radiusretries
radiussecret
radiussvctype
radiustimeout
<n.n.n.n>
<n.n.n.n>
<n.n.n.n>
<n.n.n.n>
<number>
<radiussecret>
<yes|no>
<number>
LDAP secureldap yes|no
TACACS+ tacplusacctsvr1
tacplusacctsvr2
tacplusauthsvr1
tacplusauthsvr2
tacplusraccess
tacplusretries
tacplussecret
tacplustimeout
<n.n.n.n>
<n.n.n.n>
<n.n.n.n>
<n.n.n.n>
yes|no
<number>
<tacplussecret>
<number>
Table 3.1: Cyclades ACS 5000 Console Server Serial Port and General Authentication Methods
Authentication type Parameter Description