User Manual

Table Of Contents
NETGEAR M4500 Series Switches CLI Command Reference Manual 424
5.13. TACACS+ Commands
TACACS+ provides access control for networked devices via one or more centralized servers. Similar to RADIUS,
this protocol simplifies authentication by making use of a single database that can be shared by many clients on
a large network. TACACS+ is based on the TACACS protocol (described in RFC1492) but additionally provides for
separate authentication, authorization, and accounting services. The original protocol was UDP based with
messages passed in clear text over the network; TACACS+ uses TCP to ensure reliable delivery and a shared key
configured on the client and daemon server to encrypt all messages.
5.13.1. show tacacs
This command displays configured information and statistics of a TACACS+ server.
Format show tacacs [<ip-address | hostname>]
Mode Privileged EXEC
Display Message
Example: The following shows an example of the command.
(M4500-32C) (Config)#show tacacs
Global Timeout: 10
Host address Port Timeout Priority
--------------------- ------ ------- --------
10.0.0.1 49 Global 0
Parameter
Definition
Host address
The IP address or hostname of the configured TACACS+ server.
Port
Shows the configured TACACS+ server port number.
Timeout
Shows the timeout in seconds for establishing a TCP connection.
Priority
Shows the preference order in which TACACS+ servers are contacted. If a server
connection fails, the next highest priority server is contacted.
Link Local Interface
Shows the outgoing interface used by the link-local address