Configuring TACACS+ for Devices in a Traditional Stack
Because devices operating in a RUCKUS traditional stack topology present multiple console ports, you must take additional steps to secure these ports when configuring TACACS+.
The following is a sample AAA console configuration using TACACS+.
aaa authentication login default tacacs+ <- For Telnet/SSH login, use TACACS+ authentication
aaa authentication login privilege-mode <- After successful login, enter privileged EXEC mode
aaa accounting commands 0 default start-stop tacacs+ <- Do TACACS+ accounting
for all device commands
aaa accounting exec default start-stop tacacs+ <- Do TACACS+ accounting for Telnet/SSH
on connection and log out
aaa accounting system default start-stop tacacs+ <- Use TACACS+ accounting to record
system events
ip address 10.10.6.56/255
tacacs-server host 255.253.255 <- Designates TACACS+ host
tacacs-server key 2 $d3NpZ0BVXFpJ <- Defines TACACS+ key