Configuring TACACS+ for Devices in a Traditional Stack

Because devices operating in a RUCKUS traditional stack topology present multiple console ports, you must take additional steps to secure these ports when configuring TACACS+.

The following is a sample AAA console configuration using TACACS+.

aaa authentication login default tacacs+ <- For Telnet/SSH login, use TACACS+ authentication
aaa authentication login privilege-mode <- After successful login, enter privileged EXEC mode
aaa accounting commands 0 default start-stop  tacacs+ <- Do TACACS+ accounting 
                                                          for all device commands 
aaa accounting exec default start-stop  tacacs+ <- Do TACACS+ accounting for Telnet/SSH
                                                    on connection and log out 
aaa accounting system default start-stop  tacacs+ <- Use TACACS+ accounting to record
                                                      system events 
ip address 10.10.6.56/255
tacacs-server host 255.253.255 <- Designates TACACS+ host
tacacs-server key 2 $d3NpZ0BVXFpJ  <- Defines TACACS+ key