beautypg.com

Chapter 9 – access using tacacs – GarrettCom MNS-6K 4.1.4 User Manual

Page 291

background image

M A G N U M 6 K S W I T C H E S , M N S - 6 K U S E R G U I D E

transmit – [optional] This is the transmit period, this is the time in seconds the
authenticator waits to transmit another request for identification from the supplicant.
Default value is 30. Values can be from 1 to 65535 seconds

Syntax reauth port= [status=] [period=<10-86400>]

set values on how the authenticator (Magnum 6K switch) does the re-authentication with the supplicant or
PC

port – [mandatory] – ports to be configured
status – [optional] This enables/disables re-authentication
period – [optional] this is the re-authentication period in seconds. This is the time the
authenticator waits before a re-authentication process will be done again to the supplicant.
Default value is 3600 seconds (1 hour). Values can range from 10 to 86400 seconds.

Syntax show-stats port= displays 802.1x related statistics

Syntax trigger-reauth port= manually initiate a re-authentication of supplicant

Chapter 9 – Access using
TACACS+

Syntax show tacplus - show status of TACACS or servers configured as TACACS+

servers


Syntax
tacplus [ order=] - enable or disable TACACS

authentication, specifying the order in which the server or local database is looked up where “tac,local”
implies, first the TACAS+ server, then local logins on the device


Syntax
tacserver id= [ip=] [port=]

[encrypt=] [key=] [mgrlevel=]
[oprlevel=]

– adds a list of up to five TACACS+ servers where

– [mandatory] adds or delete a TACACS+ server.
id= – [mandatory] the order in which the TACACS+ servers should be polled for
authenticaton
[ip=] – [mandatory for add] the IP address of the TACACS+ server
[port=] – [optional for add] TCP port number on which the server is listening
[encrypt=] – [optional for add] enable or disable packet encryption
[key=] – [optional for add, mandatory with encrypt] when encryption is enabled,
the secret shared key string must be supplied
[mgrlevel=] and [oprlevel=] – [optional] specifies the manager and
operator level as defined on the TACACS+ server for the respective level of login


290

This manual is related to the following products: