Lantronix SISPM1040-3166-L Web User Guide Rev G PDF 14.13 MB - Page 250

Parameter, descriptions, Authentication Method, Client, Methods, Service, Command Authorization

Page 250 highlights

Transition Networks SISPM1040-3xxx-L Web User Guide Parameter descriptions: Authentication Method : this section lets you configure how a user is authenticated when they log into the switch via one of the management client interfaces. The table has one row for each client type and a number of columns: Client : The management client for which the configuration below applies (console, telnet, ssh, http, https). Methods : Authentication Method can be set to one of these values: no : authentication is disabled and login is not possible. redirect: When HTTPS is enabled, enable HTTPS automatic redirect on the switch. local : use the local user database on the switch for authentication. radius : use a remote RADIUS server for authentication. tacacs : use a remote TACACS server for authentication. Methods that involves remote servers are timed out if the remote servers are offline. In this case the next method is tried. Each method is tried from left to right and continues until a method either approves or rejects a user. Note: If a remote server is used for primary authentication it is recommended to configure secondary authentication as 'local'. This will enable the management client to login via the local user database if none of the configured authentication servers are alive. Service Port : The TCP port for each client service. The network port number to which this client is bound to provide service. A valid port number is 1 ~ 65534. Command Authorization Method: this section lets you limit the CLI commands available to a user (console, telnet, ssh). The table has one row for each client type and a number of columns: Client : The management client for which the configuration below applies. Method : Authorization Method can be set to one of these values: no: authorization is disabled and login is not possible. tacacs : use a remote TACACS+ server for authorization. Cmd Lvl : Authorize all commands with a privilege level higher than or equal to this level. Valid entries are 0 - 15. Cfg Cmd : Checkbox to Enable or disable configuration commands. Accounting Method: this section lets you configure command and exec (login) accounting. The table has one row for each client type and a number of columns: Client : The management client (console, telnet, ssh, http, https) for which the configuration below applies. 33763 Rev. G https://www.transition.com Page 250 of 496

  • 1
  • 2
  • 3
  • 4
  • 5
  • 6
  • 7
  • 8
  • 9
  • 10
  • 11
  • 12
  • 13
  • 14
  • 15
  • 16
  • 17
  • 18
  • 19
  • 20
  • 21
  • 22
  • 23
  • 24
  • 25
  • 26
  • 27
  • 28
  • 29
  • 30
  • 31
  • 32
  • 33
  • 34
  • 35
  • 36
  • 37
  • 38
  • 39
  • 40
  • 41
  • 42
  • 43
  • 44
  • 45
  • 46
  • 47
  • 48
  • 49
  • 50
  • 51
  • 52
  • 53
  • 54
  • 55
  • 56
  • 57
  • 58
  • 59
  • 60
  • 61
  • 62
  • 63
  • 64
  • 65
  • 66
  • 67
  • 68
  • 69
  • 70
  • 71
  • 72
  • 73
  • 74
  • 75
  • 76
  • 77
  • 78
  • 79
  • 80
  • 81
  • 82
  • 83
  • 84
  • 85
  • 86
  • 87
  • 88
  • 89
  • 90
  • 91
  • 92
  • 93
  • 94
  • 95
  • 96
  • 97
  • 98
  • 99
  • 100
  • 101
  • 102
  • 103
  • 104
  • 105
  • 106
  • 107
  • 108
  • 109
  • 110
  • 111
  • 112
  • 113
  • 114
  • 115
  • 116
  • 117
  • 118
  • 119
  • 120
  • 121
  • 122
  • 123
  • 124
  • 125
  • 126
  • 127
  • 128
  • 129
  • 130
  • 131
  • 132
  • 133
  • 134
  • 135
  • 136
  • 137
  • 138
  • 139
  • 140
  • 141
  • 142
  • 143
  • 144
  • 145
  • 146
  • 147
  • 148
  • 149
  • 150
  • 151
  • 152
  • 153
  • 154
  • 155
  • 156
  • 157
  • 158
  • 159
  • 160
  • 161
  • 162
  • 163
  • 164
  • 165
  • 166
  • 167
  • 168
  • 169
  • 170
  • 171
  • 172
  • 173
  • 174
  • 175
  • 176
  • 177
  • 178
  • 179
  • 180
  • 181
  • 182
  • 183
  • 184
  • 185
  • 186
  • 187
  • 188
  • 189
  • 190
  • 191
  • 192
  • 193
  • 194
  • 195
  • 196
  • 197
  • 198
  • 199
  • 200
  • 201
  • 202
  • 203
  • 204
  • 205
  • 206
  • 207
  • 208
  • 209
  • 210
  • 211
  • 212
  • 213
  • 214
  • 215
  • 216
  • 217
  • 218
  • 219
  • 220
  • 221
  • 222
  • 223
  • 224
  • 225
  • 226
  • 227
  • 228
  • 229
  • 230
  • 231
  • 232
  • 233
  • 234
  • 235
  • 236
  • 237
  • 238
  • 239
  • 240
  • 241
  • 242
  • 243
  • 244
  • 245
  • 246
  • 247
  • 248
  • 249
  • 250
  • 251
  • 252
  • 253
  • 254
  • 255
  • 256
  • 257
  • 258
  • 259
  • 260
  • 261
  • 262
  • 263
  • 264
  • 265
  • 266
  • 267
  • 268
  • 269
  • 270
  • 271
  • 272
  • 273
  • 274
  • 275
  • 276
  • 277
  • 278
  • 279
  • 280
  • 281
  • 282
  • 283
  • 284
  • 285
  • 286
  • 287
  • 288
  • 289
  • 290
  • 291
  • 292
  • 293
  • 294
  • 295
  • 296
  • 297
  • 298
  • 299
  • 300
  • 301
  • 302
  • 303
  • 304
  • 305
  • 306
  • 307
  • 308
  • 309
  • 310
  • 311
  • 312
  • 313
  • 314
  • 315
  • 316
  • 317
  • 318
  • 319
  • 320
  • 321
  • 322
  • 323
  • 324
  • 325
  • 326
  • 327
  • 328
  • 329
  • 330
  • 331
  • 332
  • 333
  • 334
  • 335
  • 336
  • 337
  • 338
  • 339
  • 340
  • 341
  • 342
  • 343
  • 344
  • 345
  • 346
  • 347
  • 348
  • 349
  • 350
  • 351
  • 352
  • 353
  • 354
  • 355
  • 356
  • 357
  • 358
  • 359
  • 360
  • 361
  • 362
  • 363
  • 364
  • 365
  • 366
  • 367
  • 368
  • 369
  • 370
  • 371
  • 372
  • 373
  • 374
  • 375
  • 376
  • 377
  • 378
  • 379
  • 380
  • 381
  • 382
  • 383
  • 384
  • 385
  • 386
  • 387
  • 388
  • 389
  • 390
  • 391
  • 392
  • 393
  • 394
  • 395
  • 396
  • 397
  • 398
  • 399
  • 400
  • 401
  • 402
  • 403
  • 404
  • 405
  • 406
  • 407
  • 408
  • 409
  • 410
  • 411
  • 412
  • 413
  • 414
  • 415
  • 416
  • 417
  • 418
  • 419
  • 420
  • 421
  • 422
  • 423
  • 424
  • 425
  • 426
  • 427
  • 428
  • 429
  • 430
  • 431
  • 432
  • 433
  • 434
  • 435
  • 436
  • 437
  • 438
  • 439
  • 440
  • 441
  • 442
  • 443
  • 444
  • 445
  • 446
  • 447
  • 448
  • 449
  • 450
  • 451
  • 452
  • 453
  • 454
  • 455
  • 456
  • 457
  • 458
  • 459
  • 460
  • 461
  • 462
  • 463
  • 464
  • 465
  • 466
  • 467
  • 468
  • 469
  • 470
  • 471
  • 472
  • 473
  • 474
  • 475
  • 476
  • 477
  • 478
  • 479
  • 480
  • 481
  • 482
  • 483
  • 484
  • 485
  • 486
  • 487
  • 488
  • 489
  • 490
  • 491
  • 492
  • 493
  • 494
  • 495
  • 496

Transition Networks
SISPM1040-3xxx-L Web User Guide
33763 Rev. G
Page
250
of
496
Parameter
descriptions
:
Authentication Method
: this section lets you configure how a user is authenticated when they log into the
switch via one of the management client interfaces. The table has one row for each client type and a number of
columns:
Client
: The management client for which the configuration below applies (console, telnet, ssh, http, https).
Methods
: Authentication Method can be set to one of these values:
no
: authentication is disabled and login is not possible.
redirect
: When HTTPS is enabled, enable HTTPS automatic redirect on the switch.
local
: use the local user database on the switch for authentication.
radius
: use a remote RADIUS server for authentication.
tacacs
: use a remote TACACS server for authentication.
Methods that involves remote servers are timed out if the remote servers are offline. In this case the next
method is tried. Each method is tried from left to right and continues until a method either approves or rejects a
user.
Note
:
If a remote server is used for primary authentication it is recommended to configure secondary
authentication as 'local'. This will enable the management client to login via the local user database if none of the
configured authentication servers are alive.
Service
Port
: The TCP port for each client service. The network port number to which this client is bound to
provide service. A valid port number is 1 ~ 65534.
Command Authorization Method
: this section lets you limit the CLI commands available to a user (console,
telnet, ssh). The table has one row for each client type and a number of columns:
Client
: The management client for which the configuration below applies.
Method
: Authorization Method can be set to one of these values:
no
: authorization is disabled and login is not possible.
tacacs
: use a remote TACACS+ server for authorization.
Cmd
Lvl
: Authorize all commands with a privilege level higher than or equal to this level. Valid entries are 0 - 15.
Cfg
Cmd
: Checkbox to Enable or disable configuration commands.
Accounting Method
: this section lets you configure command and exec (login) accounting. The table has one row
for each client type and a number of columns:
Client
: The management client (console, telnet, ssh, http, https) for which the configuration below applies.