Cisco 4700M Configuration Manual page 110

Application control engine appliance security
Hide thumbs Also See for 4700M:
Table of Contents

Advertisement

Configuring the ACE as a Client of a RADIUS, TACACS+, or LDAP Server
The syntax of this server configuration mode command is as follows:
The ip_address argument is the IP address for an existing RADIUS, TACACS+,
or LDAP server that you want to add to the server group. Enter the address in
dotted-decimal IP notation (for example, 192.168.11.1). You can add multiple
servers to the server group by entering multiple server commands while in server
configuration mode. The same server can belong to multiple server groups.
For example, to create a RADIUS server group, enter:
host1/Admin(config)# aaa group server radius RAD_Server_Group1
host1/Admin(config-radius)# server 192.168.252.1
host1/Admin(config-radius)# server 192.168.252.2
host1/Admin(config-radius)# server 192.168.252.3
To remove a server from a server group, enter:
host1/Admin(config-radius)# no server 192.168.252.3
To remove a server group, enter:
host1/Admin(config)# no aaa group server radius RAD_Server_Group1
For the TACACS+, RADIUS, and LDAP server groups, you can also configure the
following parameters:
Cisco 4700 Series Application Control Engine Appliance Security Configuration Guide
2-40
server ip_address
For a TACACS+ server group, you can specify a dead-time interval for the
server group. See the
"Setting the Dead-Time Interval for a TACACS+ Server
Group"
section.
For a RADIUS server group, you can specify a dead-time interval for the
server group. See the
"Setting the Dead-Time Interval for a RADIUS Server
Group"
section.
For an LDAP server group, you may specify the following parameters:
User profile attribute—See the
Type for an LDAP Server Group"
Base DN—See the
Group"
section.
LDAP search filter—See the
Server Group"
section.
Chapter 2
Configuring Authentication and Accounting Services
"Configuring the User Profile Attribute
section.
"Configuring the Base DN for an LDAP Server
"Configuring the Search Filter for an LDAP
OL-16202-01

Advertisement

Table of Contents
loading

This manual is also suitable for:

4700 series

Table of Contents