RE: How to with TACACS+

From: Abraham, Ajith (Ajith.Abraham@xxxxxxxxxx)
Date: Wed Oct 17 2001 - 14:11:42 GMT-3


   
aaa new-model
aaa authentication login default tacacs+ line
aaa authentication login nopass none
aaa authentication enable default tacacs+ enable
aaa authorization exec default tacacs+ if-authenticated
aaa authorization commands 1 default tacacs+ if-authenticated
aaa authorization commands 15 default tacacs+ if-authenticated
aaa authorization commands 15 nopass none
aaa authorization network nopass none
aaa authorization reverse-access nopass none

line 1 4
 login authentication nopass
 autocommand telnet transetaa
 terminal-type vt220
 stopbits 1
 speed 19200
 flowcontrol software

-----Original Message-----
From: Jim Brown [mailto:Jim.Brown@CaseLogic.com]
Sent: Wednesday, October 17, 2001 1:04 PM
To: 'Abraham, Ajith'; ccielab@groupstudy.com
Subject: RE: How to with TACACS+

Please post the config of the aaa statements and as it appears under the
async interface.

-----Original Message-----
From: Abraham, Ajith [mailto:Ajith.Abraham@FLHOSP.ORG]
Sent: Wednesday, October 17, 2001 11:01 AM
To: ccielab@groupstudy.com
Subject: How to with TACACS+

I am trying to enable TACACS+/AAA on routers with ASYNC ports. I would like
have authentication enabled on all lines except for the ASYNC ones, as I am
using them as terminal server for an app that needs telnet access without
having to logon. Naming a method as NOLOGIN none, is not working and I use
IOS 11.2(17). Any suggestions other than "upgrade the router is much
appreciated".

Thank you.

Sincerely

Avran



This archive was generated by hypermail 2.1.4 : Thu Jun 20 2002 - 22:33:21 GMT-3