cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
488
Views
0
Helpful
0
Replies

TACACS+ authentication with MDS 9148S SAN Switch

MSL
Level 1
Level 1

Hi

 

As of now we are using local authentication with MDS. As part of security hardening We have to configure authentication through TACACS+. Windows 2016 Domain Controllers are in network. We have the following KB "https://www.cisco.com/c/en/us/td/docs/switches/datacenter/mds9000/sw/8_x/config/security/cisco_mds9000_security_config_guide_8x/configuring_security_features_on_external_aaa_server.html#con_2092893"

 

Below commands are clear

 

configure terminal
feature tacacs+
tacacs-server host 171.71.58.91
tacacs-server host 171.71.58.91 port 2
tacacs-server host 171.71.58.91 key MyKey
tacacs-server host 171.71.58.91 timeout 25

 

Rest of the configuration part is not clear, like once we create the accounts in Windows Domain controllers, where do we mention the roles, also in case TACACS servers not available then how to configure local authentication? We have 2 X TACACS servers, how to mention both of them etc.

 

Thanks in advance

0 Replies 0