Command Reference Guide
222 ● primary authorization 3Com Router 5000 Family and Router 6000 Family
Command Reference
primary authorization
Purpose Use the primary authorization command to configure a primary TACACS
authorization server.
Use the undo primary authorization command to delete the configured
primary authorization server.
Syntax primary authorization ip-address [ port ]
undo primary authorization
Parameters ip-address
IP address of the server, a valid unicast address in
dotted decimal format.
port
Port number of the server. Valid values are 1 to 65535.
If no value is specified, the default is 49.
Default By default, IP address of TACACS authorization server is all zeros.
Example Configure a primary authorization server.
[3Com] hwtacacs scheme test1
[3Com-hwtacacs-test1] primary authorization 10.163.155.13 49
View This command can be used in the following views:
■ HWTACACS view
Description If TACACS authentication is configured for a user without TACACS authorization
server, the user cannot log in regardless of its user type.
You are not allowed to assign the same IP address to both primary and secondary
authorization servers.
You can configure only one primary authorization server in a HWTACACS scheme. If
you repeatedly use this command, the latest configuration replaces the previous one.
You can remove an authorization server only when it is not being used by any active
TCP connections, and the removal impacts only packets forwarded afterwards.
Related Command display hwatacs