TACACS general MIBs

The Terminal Access Controller Access Control System (TACACS) or security protocols can be used to authenticate the following types of access to devices:

  • Telnet access
  • SSH access
  • Access to management functions
  • Web management access
  • Access to the Privileged EXEC level and CONFIG level of the CLI

The TACACS and protocols define how authentication, authorization, and accounting (AAA) information is sent between a device and an authentication database on a TACACS server.

The following objects provide information on TACACS authentication and apply to all devices.

Name, OID, and syntax

Access

Description

snTacacsRetransmit

1.3.6.1.4.1.1991.1.1.3.13.1.1

Syntax: Integer

Read-write

Shows the number of authentication query retransmissions to the TACACS server.

Valid values: 1 - 5

Default: 3

snTacacsTimeOut

1.3.6.1.4.1.1991.1.1.3.13.1.2

Syntax: Integer

Read-write

Specifies how many seconds to wait for an authentication reply from the TACACS server.

Valid values: 1 - 15

Default: 3 seconds

snTacacsDeadTime

1.3.6.1.4.1.1991.1.1.3.13.1.3

Syntax: Integer

Read-write

Specifies the TACACS server dead time in minutes.

Valid values: 1 - 5

Default: 3 minutes

snTacacsKey

1.3.6.1.4.1.1991.1.1.3.13.1.4

Syntax: DisplayString

Read-write

Authentication key displayed as encrypted text.

Valid values: Up to 64 characters

A write operation can only be done if the SET request uses SNMPv3 with data encrypted using a privacy key.

snTacacsSNMPAccess

1.3.6.1.4.1.1991.1.1.3.13.1.5

Syntax: Integer

Read-only

Indicates whether the TACACS group MIB objects can be accessed by an SNMP manager:

  • disabled(0) - All TACACS group MIB objects return "general error".
  • enabled(1)

Default: enabled(1)