Tacacs and tacacs, Telnet access, Tacacs and tacacs+ telnet access – Brocade BigIron RX Series Configuration Guide User Manual
Page 1536
![background image](/manuals/361694/1536/background.png)
1458
BigIron RX Series Configuration Guide
53-1002484-04
Security/Management
E
TACACS and TACACS+
Telnet access
ip ssl port
<
port-number>
“Specifying a port for SSL communication”
ip ssl private-key-file tftp
<
ip-addr>
<
key-filename>
“Importing digital certificates and RSA private key
files”
web-management https
“Enabling the SSL server on the device”
Commands
See ...
aaa accounting commands
<
privilege-level> default
start-stop tacacs+ | none
“Configuring TACACS+ accounting for CLI commands”
aaa accounting exec default
start-stop tacacs+ | none
“Configuring TACACS+ accounting for Telnet/SSH
(Shell) access”
aaa accounting system default start-stop tacacs+ | none
“Configuring TACACS+ accounting for system events”
aaa authentication enable implicit-user
“Configuring Enable authentication to prompt for
aaa authentication login privilege-mode
“Entering privileged EXEC mode after a Telnet or SSH
login”
aaa authorization commands
<
privilege-level> default
tacacs+ | none
“Configuring command authorization”
aaa authorization exec default tacacs+ | none
“Configuring Exec authorization”
enable aaa console
“AAA support for console commands”
show aaa
“Displaying TACACS and TACACS+ statistics and
configuration information”
tacacs-server dead-time
<
number>
“Setting the dead time parameter”
tacacs-server host
<
ip-addr> |
<
server-name> [auth-port
<
number> [authentication-only | authorization-only |
accounting-only | default] [key
<
string>]]
“Specifying different servers for individual AAA
functions”
tacacs-server key [0 | 1]
<
string>
tacacs-server retransmit
<
number>
“Setting the retransmission limit”
tacacs-server timeout
<
number>
“Setting the timeout parameter”
Commands
See ...
telnet access-group
<
num> |
<
name>
“Using an ACL to restrict Telnet access”
telnet client
<
ip-addr>
“Restricting Telnet access to a specific IP address”
telnet login-retries
<
number>
“Specifying the maximum number of login attempts
for Telnet access”
Commands
See ...