The Terminal Access Controller Access Control System (TACACS) or security protocols
can be used to authenticate the following types of access to devices:
- Telnet access
- SSH access
- Access to management functions
- Web management access
- Access to the Privileged EXEC level and CONFIG level of the CLI
The TACACS and protocols define how authentication, authorization, and accounting
(AAA) information is sent between a device and an authentication database on a TACACS
server.
The following objects provide information on TACACS authentication and apply to all
devices.
Name, OID, and syntax
|
Access
|
Description
|
| snTacacsRetransmit
brcdIp.1.1.3.13.1.1
Syntax: Integer
|
Read-write
|
Shows the number of authentication query retransmissions to the TACACS server.
Valid values: 1 - 5
Default: 3
|
| snTacacsTimeOut
brcdIp.1.1.3.13.1.2
Syntax: Integer
|
Read-write
|
Specifies how many seconds to wait for an authentication reply from the TACACS server.
Valid values: 1 - 15 Default: 3 seconds
|
| snTacacsDeadTime
brcdIp.1.1.3.13.1.3
Syntax: Integer
|
Read-write
|
Specifies the TACACS server dead time in minutes.
Valid values: 1 - 5 Default: 3 minutes
|
| snTacacsKey
brcdIp.1.1.3.13.1.4
Syntax: DisplayString
|
Read-write
|
Authentication key displayed as encrypted text.
Valid values: Up to 64 characters
A write operation can only be done if the SET request uses SNMPv3 with data encrypted
using a privacy key.
|
| snTacacsSNMPAccess
brcdIp.1.1.3.13.1.5
Syntax: Integer
|
Read-only
|
Indicates whether the TACACS group MIB objects can be accessed by an SNMP manager:
- disabled(0) - All TACACS group MIB objects return "general error".
- enabled(1)
Default: enabled(1)
|