Cisco ASA Series Cli Configuration Manual page 862

Software version 9.0 for the services module
Hide thumbs Also See for ASA Series:
Table of Contents

Advertisement

Configuring AAA
Command
Step 4
reactivation-mode {depletion [deadtime minutes] |
timed}
Example:
hostname(config-aaa-server-group)#
reactivation-mode deadtime 20
Step 5
accounting-mode simultaneous
Example:
hostname(config-aaa-server-group)#
accounting-mode simultaneous
Step 6
aaa-server server_group [interface_name] host
server_ip
Example:
hostname(config)# aaa-server servergroup1 outside
host 10.10.1.1
Table 1-2
Host Mode Commands, Server Types, and Defaults
Command
accounting-port
acl-netmask-convert
authentication-port
kerberos-realm
key
ldap-attribute-map
ldap-base-dn
ldap-login-dn
Cisco ASA Series CLI Configuration Guide
1-16
Applicable AAA Server
Types
RADIUS
RADIUS
RADIUS
Kerberos
RADIUS
TACACS+
LDAP
LDAP
LDAP
Chapter 1
Configuring AAA Servers and the Local Database
Purpose
Specifies the method (reactivation policy) by which
failed servers in a group are reactivated.
The depletion keyword reactivates failed servers only
after all of the servers in the group are inactive.
The deadtime minutes keyword-argument pair specifies
the amount of time in minutes, between 0 and 1440, that
elapses between the disabling of the last server in the
group and the subsequent reenabling of all servers. The
default is 10 minutes.
The timed keyword reactivates failed servers after 30
seconds of down time.
Sends accounting messages to all servers in the group
(RADIUS or TACACS+ only).
To restore the default of sending messages only to the
active server, enter the accounting-mode single
command.
Identifies the server and the AAA server group to which
it belongs.
When you enter the aaa-server host command, you enter
aaa-server host configuration mode. As needed, use host
configuration mode commands to further configure the
AAA server.
The commands in host configuration mode do not apply
to all AAA server types.
commands, the server types to which they apply, and
whether or not a new AAA server definition has a default
value for that command. Where a command is applicable
to the specified server type and no default value is
provided (indicated by "—"), use the command to
specify the value.
Default Value
Description
1646
standard
1645
Table 1-2
lists the available

Advertisement

Table of Contents
loading

Table of Contents