思科网络设备加AAA相关配置

aaa new-model

username  xxx password xxx

enable secret xxxx

aaa authentication login default group tacacs+ local

aaa authentication enable default group tacacs+ enable

aaa authorization console

aaa authorization exec default group tacacs+ local

aaa authorization commands 15 default group tacacs+ local

aaa accounting commands 15 default start-stop group tacacs+

 

tacacs-server directed-request

tacacs server AdminAuth  (tacacs的名字随便起)

 address ipv4 10.0.XXX.XXX(tacacs服务ip)

 key cisco  (tacacs服务器上要求的密码)

single-connection

ip tacacs source-interface Loopback0

posted @ 2020-07-30 17:32  繁星如雨  阅读(478)  评论(0编辑  收藏  举报