Use this procedure to define how user credential validation is conducted on behalf of a Management Access policy. Setting up an authentication scheme by policy allows for policy member credential validation collectively, as opposed to authenticating users individually.
To configure or edit Management policy Authentication settings:
If you want to edit a Management policy's Authentication settings, go to Policies > Management. Select adjacent to the target Management policy. Proceed to the next step.
Parameter | Description |
---|---|
Local | Use this option to enable or clear local authentication
mode. Local authentication uses the local username and
password database to authenticate a user. When not selected,
an external authentication resource is used to validate user
access requests. The external authentication resource could
be a dedicated RADIUS server Note: The local
authentication mode is enabled by default. Not selecting
the local authentication enables the RADIUS and AAA
Policy parameters.
|
RADIUS | If authentication is to be handled by an external RADIUS
server, select one of the following options:
|
AAA Policy | If external RADIUS server authentication option is
selected, select the AAA policy to use with the external
RADIUS resource. Controllers and service platforms that are
not using their local RADIUS resource will need to
inter-operate with a RADIUS and LDAP Server (AAA Servers) to
provide user database information and user authentication
data. The AAA policy points to this external RADIUS server
resource Select a policy from the AAA Policy drop-down list |
TACACS | If local authentication is disabled, and
authentication is to be handled by an external TACACS
server, select one of the following options:
|
AAA TACACS Policy | If enabling external TACACS server
authentication, select the TACACS policy to use. The AAA
TACACS policy points to this external TACACS server
resource. Select an existing AAA TACACS policy. Otherwise, perform the procedure Manage AAA TACACS Policies to create a new policy that you can then select here. |
Note
You cannot restore default settings after applying or saving changes.Note
This does not permanently save the settings you configured. If you perform a Reload (warm reboot), applied settings will be lost.Note
If you do not select Apply or Save, the settings that you configured are not saved when you move away from the configuration window.