Network Router User Manual
Table Of Contents
- Notices
- Contents
- About This Manual
- Introduction
- Hot Swapping Line Cards and Control Modules
- Bridging Configuration Guide
- Bridging Overview
- VLAN Overview
- Configuring SSR Bridging Functions
- Monitoring Bridging
- Configuration Examples
- SmartTRUNK Configuration Guide
- ATM Configuration Guide
- Packet-over-SONET Configuration Guide
- DHCP Configuration Guide
- IP Routing Configuration Guide
- IP Routing Protocols
- Configuring IP Interfaces and Parameters
- Configuring IP Interfaces to Ports
- Configuring IP Interfaces for a VLAN
- Specifying Ethernet Encapsulation Method
- Configuring Jumbo Frames
- Configuring Address Resolution Protocol (ARP)
- Configuring Reverse Address Resolution Protocol (RARP)
- Configuring DNS Parameters
- Configuring IP Services (ICMP)
- Configuring IP Helper
- Configuring Direct Broadcast
- Configuring Denial of Service (DOS)
- Monitoring IP Parameters
- Configuring Router Discovery
- Configuration Examples
- VRRP Configuration Guide
- RIP Configuration Guide
- OSPF Configuration Guide
- BGP Configuration Guide
- Routing Policy Configuration Guide
- Route Import and Export Policy Overview
- Configuring Simple Routing Policies
- Configuring Advanced Routing Policies
- Multicast Routing Configuration Guide
- IP Policy-Based Forwarding Configuration Guide
- Network Address Translation Configuration Guide
- Web Hosting Configuration Guide
- Overview
- Load Balancing
- Web Caching
- IPX Routing Configuration Guide
- Access Control List Configuration Guide
- Security Configuration Guide
- QoS Configuration Guide
- Performance Monitoring Guide
- RMON Configuration Guide
- LFAP Configuration Guide
- WAN Configuration Guide
- WAN Overview
- Frame Relay Overview
- Configuring Frame Relay Interfaces for the SSR
- Monitoring Frame Relay WAN Ports
- Frame Relay Port Configuration
- Point-to-Point Protocol (PPP) Overview
- Configuring PPP Interfaces
- Monitoring PPP WAN Ports
- PPP Port Configuration
- WAN Configuration Examples
- New Features Supported on Line Cards

Chapter 20: Security Configuration Guide
278 SmartSwitch Router User Reference Manual
Configuring TACACS Plus
You can secure login or Enable mode access to the SSR by enabling a TACACS Plus client.
A TACACS Plus server responds to the SSR TACACS Plus client to provide
authentication.
You can configure up to five TACACS Plus server targets on the SSR. A timeout is set to
tell the SSR how long to wait for a response from TACACS Plus servers.
To configure TACACS Plus security, enter the following commands in Configure mode:
Specify a TACACS Plus server.
tacacs-plus set server
<hostname or IP-addr>
Set the TACACS Plus time to wait
for a TACACS Plus server reply.
tacacs-plus set timeout <number>
Determine the SSR action if no
server responds.
tacacs-plus set last-resort
password|succeed
Enable TACACS Plus.
tacacs-plus enable
Cause TACACS Plus
authentication at user login or
when user tries to access Enable
mode.
tacacs-plus authentication login|enable
Cause TACACS Plus
authentication at user login or
when user tries to access Enable
mode.
tacacs-plus authentication login|enable
Logs specified types of command
to TACACS Plus server.
tacacs-plus accounting command level
<
level>
Logs to TACACS Plus server
when shell is stopped or started
on SSR.
tacacs-plus accounting shell
start|stop|all
Logs to TACACS Plus server
SNMP changes to startup or
active configuration.
tacacs-plus accounting snmp
active|startup
Logs specified type(s) of
messages to TACACS Plus server.
tacacs-plus accounting system
fatal|error|warning|info