User Manual

Table Of Contents
Insight Managed 8-Port Gigabit (Hi-Power) PoE+ Smart Cloud Switch with NETGEAR FlexPoE Power
Manage Switch Security User Manual276
Configure a TACACS+ server on the switch
You can configure up to five TACACS+ servers with which the switch can communicate.
To configure a TACACS+ server on the switch:
1. Connect your computer to the same network as the switch.
You can use a WiFi or wired connection to connect your computer to the network, or
connect directly to a switch that is off-network using an Ethernet cable.
2. Launch a web browser.
3. In the address field of your web browser, enter the IP address of the switch.
For information about finding the IP address of the switch, see Access the switch on
page 14.
The Local Device Login page displays.
If you did not yet register the switch with your NETGEAR account, the Register to unlock
all features page displays. For more information, see
Register and access the switch with
your NETGEAR account on page 29.
4. Enter one of the following passwords:
After registration, enter your customized local device password.
If you previously added the switch to an Insight network location, enter the Insight
network password.
For more information about the local device password and the Insight network password,
see
Credentials for the local browser UI on page 28.
5. Click the Login button.
The System Information page displays.
6. Select Security > Management Security> TACACS+ > TACACS+ Server Configuration.
The TACACS+ Server Configuration page displays.
7. In the TACACS+ Server field, enter the TACACS+ server IP address.
8. In the Priority field, specify the priority for the TACACS+ server.
The priority determines the order in which the TACACS+ servers are contacted when
attempting to authenticate a user. A value of 0 is the highest priority. The valid range is
0–65535.
9. In the Port field, specify the authentication port value for TACAS+ server sessions. It must
be within the range 0–65535. If you do not specify a value, the switch uses the standard
TCP port 49 for sessions with the server.
10. In the Key String field, specify the authentication and encryption key for TACACS+
communications between the device and the TACACS+ server.
The valid range is 0–128. The key must match the key used on the TACACS+ server.