Users Guide

Table Of Contents
Usage
Information
The key configured with this command must match the key configured on the TACACS+ daemon.
tacacs-server vrf
Create an association between a TACACS server group and a VRF and source interface.
Syntax
tacacs-server vrf vrf-name [source-interface interface]
To delete the association between a TACACS server group and a VRF and source interface, use the no
tacacs-server vrf vrf-name [source-interface interface] command.
Parameters
vrf
vrf-name
Enter the keyword vrf and then the name of the VRF to associate a TACACS
server group with that VRF.
interface
Enter the following keywords and slot/port or number information:
For a 1-GigabitEthernet interface, enter the keyword GigabitEthernet then
the slot/port information.
For a 10-Gigabit Ethernet interface, enter the keyword
TenGigabitEthernet then the slot/port information.
For a Loopback interface, enter the keyword loopback then a number from 0
to 16383.
For a port channel interface, enter the keywords port-channel then a
number.
For a Null interface, enter the keyword null then the Null interface number.
For a VLAN interface, enter the keyword vlan then a number from 1 to 4094.
Defaults Not configured.
Command Modes TACACS SERVER GROUP
Command
History
This guide is platform-specific. For command information about other platforms, see the relevant Dell
Networking OS Command Line Reference Guide.
Version Description
9.8(2.0) Introduced on the S3100 series.
9.8(1.0) Introduced on the Z9100-ON.
9.8(0.0P5) Introduced on the S4048-ON.
9.8(0.0P2) Introduced on the S3048-ON.
9.7(0.0) Introduced on the S6000ON.
9.4.(0.0) Introduced on the S-Series and Z-Series.
Usage
Information
You can use this command to associate a group of TACACS servers with a VRF and source interface. You
can configure the source interface only with the VRF attribute and source interface is optional with the
VRF attributes.
If VRF is not configured on the TACACS group, then the group is considered to be on the default VRF.
RADIUS groups and VRFs have one-to-one mapping. If a VRF is configured with one RADIUS group,
then you cannot use the same VRF with another RADIUS group. When the VRF is removed, then the
corresponding RADIUS group is also removed automatically.
Example
Dell(conf)# tacacs-server group group1
Dell(conf-tacacs-group)# tacacs-server vrf vrf1 source-interface
gigabitethernet 1/36
Dell(conf)# tacacs-server group group2
Dell(conf-tacacs-group)# tacacs-server vrf default
1232 Security