beautypg.com

Brocade Mobility Access Point System Reference Guide (Supporting software release 5.5.0.0 and later) User Manual

Page 529

background image

Brocade Mobility Access Point System Reference Guide

519

53-1003100-01

7

21. Set the following AAA TACACS Accounting server configuration parameters:

22. Set the following AAA TACACS Authentication server configuration parameters:

23. Set the following AAA TACACS Authorization server configuration parameters:

Accounting Access Method

Specify the access methods for which accounting must be performed. From the drop-down select
one of:

all – Accounting is performed for all types of access.

console – Accounting is performed only for console access

ssh – Accounting is performed only for access through SSH.

telnet – Accounting is performed only for access through Telnet

Server Preference

Specifies how an accounting server is selected from the server pool for sending accounting
requests. Select one of the following:

NONE – No preference in selection of server used for accounting.

authenticated-server-host – Prefers the same server host used as the authentication server.

authenticated-server-number – Prefers the server with the same index as used as the
authentication server. For example, if the index of the server used for authentication server
was One (1), then use the accounting server with the index One (1).

authorized-server-host – Prefers the server host used as the authorization server.

authorized-server-number – Prefers the server with the same index as used as the
authorization server. For example, if the index of the server used for authorization server was
One (1), then use the accounting server with the index One (1).

Authentication Failure

Select to enable accounting for authentication failure.

CLI Commands

Select to enable accounting for CLI commands.

Session

Select to enable accounting for session start and session stop events.

Authentication Access
Method

Specify the access methods for authentication.

all – Authentication is performed for all types of access.

console – Authentication is performed only for console access

ssh – Authentication is performed only for access through SSH.

telnet – Authentication is performed only for access through Telnet

web – Authentication is performed only for access through the Web interface.

Directed Request

Select to enable the AAA TACACS authentication server to be used with the ‘@
nomenclature. The specified server must be present in the list of defined Authentication servers.

Authorization Access
Method

Specify the access methods for authorization:

all – Authorization is performed for all types of access.

console – Authorization is performed only for console access

ssh – Authorization is performed only for access through SSH.

telnet – Authorization is performed only for access through Telnet

Server

Specifies how an authorization server is selected from the server pool:

NONE – No preference in selection of server used for accounting.

authenticated-server-host – Prefer the same server host used as the authentication server.

authenticated-server-number – Prefer the server with the same index as used as the
authentication server. For example, if the index of the server used for authentication server
was One (1), then use the authorization server with the index One (1).

Allow Privileged
Commands

Select this option to enable privileged commands executed without command authorization.
Privileged commands can alter/change the authorization server configuration.