Got it

Compatibility with TACACS server and AR 1220E

Latest reply: Nov 8, 2021 16:59:36 768 3 1 0 0
 Issue Description

Cannot authenticate an AR router with a TACACS server version F4.0.4.27a (which is running on a Linux Debian 8.1, jadro 4.2.6-1). 

 This KB will illustrate what type of configuration is needed for a compatibility between a TACACS server and a Huawei AR router.


transparent.gif Solution
The below configuration is working just fine for FTP authentication with a TACACS server.

Please note that below you may find the configuration of TACACS server plus, version F4.0.4.27a (which is running on a Linux Debian 8.1, jadro 4.2.6-1):


      user = huawei {                                        // Please make sure the username is the same.

                 password = clear huawei123            // Please make sure the password is correct.

                 member = admin                             

                 service = shell {                              

                 set priv-lvl = 15                               // Please make sure the privilege level is 15

                 cmd = ftp {                                     

                 permit .*                                         

                        }                                             

                 set ftpdir = flash:/                      // Please make sure there is a default ftp directory

                }                                                    

 

7e9a213887ef4bc5883597108b85dae1

 

NOTE!!! As a final step, after the configuration is performed please kill the tac_plus process before restarting the server with the new configuration file ”./tac_plus tac_plus.cfg”.

thanks for your document, it is very helpful for me:)
View more
  • x
  • convention:

Great share
View more
  • x
  • convention:

Excellent! Keep up the good work!
View more
  • x
  • convention:

Comment

You need to log in to comment to the post Login | Register
Comment

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " User Agreement."

My Followers

Login and enjoy all the member benefits

Login

Block
Are you sure to block this user?
Users on your blacklist cannot comment on your post,cannot mention you, cannot send you private messages.
Reminder
Please bind your phone number to obtain invitation bonus.