TACACS+ Commands
78-21075-01 Command Line Interface Reference Guide
19.1
tacacs-server host
Use the tacacs-server host Global Configuration mode command to specify a
TACACS+ host. Use the no form of this command to delete the specified
TACACS+ host.
Syntax
ip-address
tacacs-server host {
[timeout timeout] [key key-string] [source {source-ip}] [priority priority]
encrypted tacacs-server host {
port-number] [timeout timeout] [key encrypted-key-string] [source {source-ip}]
[priority priority]
no tacacs-server host {
Parameters
•
ip-address
host
Specifies the RADIUS server host IP address. The IP address can be an
IPv4, IPv6 or IPv6z address.
•
hostname
host
characters. Maximum label length of each part of the host name: 63
characters)
•
single-connection—Specifies that a single open connection is maintained
between the device and the daemon, instead of the device opening and
closing a TCP connection to the daemon each time it communicates.
•
port-number
port
port number is 0, the host is not used for authentication. (Range: 0-65535)
•
timeout
timeout
•
key-string
key
TACACS+ communications between the device and the TACACS+ server.
This key must match the encryption used on the TACACS+ daemon. To
specify an empty string, enter "". (Length: 0-128 characters). If this parameter
is omitted, the globally-defined key (set in
hostname
|
ip-address
ip-address
hostname
|
—Specifies the TACACS+ server host IP address.
—Specifies the TACACS+ server host name. (Length: 1?158
—Specifies the TACACS server TCP port number. If the
—Specifies the timeout value in seconds. (Range: 1-30)
—Specifies the authentication and encryption key for all
[single-connection] [port port-number]
}
hostname
[single-connection] [port
|
}
}
tacacs-server
19
key) will be used.
281