Deployment Guide

NOTE: You can only configure these settings for M1000e and FN IOA devices in standalone or VLT
mode.
1. From the navigation menu, click Security.
2. In the AAA section, click Edit.
The AAA settings dialog box appears.
3. Make sure that the Authorization tab is selected and click Edit.
The Edit Authorization Profile dialog box appears.
4. In the Configuration Commands section, select whether a user has access to CONFIGURATION level
commands:
Enabled or Disabled.
5. In the Commands section, select the authorization methods for CONFIGURATION level commands
that you want to enable in the Available Methods box and use the > button to move them into the
Selected Methods box. Select from the following options:
Line — Use terminal line.
Enable — Use password protection on I/O Aggregator device.
TACACS+ — Use the TACACS+ protocol to perform user authorization.
None — No authorization.
Local — Use the local device authorization server to perform user authorization.
RADIUS — Use the RADIUS protocol to perform user authorization.
NOTE: You can click Clear Methods to clear all selections from the Selected Methods box.
6. In the Exec-Auth section, select the authorization methods for EXECUTIVE level commands that you
want to enable in the
Available Methods box and use the > button to move them into the Selected
Methods box. Select from the following options:
Line — Use terminal line.
Enable — Use password protection on I/O Aggregator device.
TACACS+ — Use the TACACS+ protocol to perform user authorization.
None — No authorization.
Local — Use the local device authorization server to perform user authorization.
RADIUS — Use the RADIUS protocol to perform user authorization.
NOTE: You can click Clear Methods to clear all selections from the Selected Methods box.
7. Click Apply.
Your selections appear on the Authorization tab.
8. To close the AAA settings dialog box, click Close.
Configuring Accounting
You can configure AAA accounting settings in the Security page.
AAA accounting enables tracking of services that users access and the amount of network resources that
those services consume. When you configure AAA accounting, the I/O Aggregator device reports user
activity to the TACACS+ security server in the form of accounting records. Each accounting record
consists of accounting AV pairs and resides on the access control server.
NOTE: You can only view and configure these settings for M1000e and FN IOA devices in
standalone or VLT mode.
1. From the navigation menu, click Security.
2. In the AAA section, click Edit.
41