MicroNugget: AAA, TACACS+, and SSH

preview_player
Показать описание

In this video, Keith Barker covers how to set up a router to authenticate users and restrict access to the secure shell (SSH). He begins with a router that has no security in place and uses TACACS+ to pair it with an AAA server.

Keith covers a lot of ground in this short video, walking you through locking down an unsecured router using a AAA server and TACACS+. He uses a straightforward checklist with eight simple steps, beginning with enabling secret on the router and then moving on to create a local user just in case a AAA server can’t be reached. The next steps are to set the domain name and create an RSA public/private key pair to establish SSH access. All of this lays the groundwork so you can enable the router to access a triple-A server. You’ll specify which AAA server you want to use, along with the key, then move on to select a default method for authenticating users.

Start learning with CBT Nuggets:

Рекомендации по теме
Комментарии
Автор

Wow, that was fast. I learned the "!" for comments and the "Control-plane" option from the video.

mr.snuggles
Автор

I can see your smiles in your talking. Makes me think your life has been good doing what you love to do. --- From Philippines

deanvm
Автор

I use Camtasia for most of my recordings. I used a live Cisco ACS server for TACACS+, and a 12.4 version of IOS for the router.

Thanks for watching-

Keith Barker

KeithBarker
Автор

You are very welcome. Thanks for watching, and for your comments.

Keith Barker

KeithBarker
Автор

Thanks for the post. Glad you enjoyed the "meal".

Best wishes,

Keith Barker

KeithBarker
Автор

Sounds good! Let us know how the setup goes and if you have any questions.

cbtnuggets
Автор

wow.keith barker now i see y u wrote th 640-554.this is amazing.thanks alot

obione
Автор

as always, amazing video with clear explanation and to the point! THANK YOU CBT NUGGETS!!

danieleberhardt
Автор

No soup or desert. That was all main course!! Awesome!

NotAMystery
Автор

holly snickers, in 5 min. Thanks Keith

gashone
Автор

Keith, you're the boss! Cheers for all the good work !

futurDaFutur
Автор

Love all your video tutorials - keep'em coming!..Cheers

swizkniv
Автор

Hi Keith, I am trying in packet tracer to use Tacacs+ authentication for switch, but I am stuck on which IP address should I use in aaa configuration on server. I am trying to assign an IP address to default vlan, but no luck.

pmanolak
Автор

! Tell to the devices that no management protocols except for SSH are allowed
- control-plane host -
- management-interface FastEthernet 2/0 allow ssh -

command control-plane host is missing in my switches; any ideas on another command ?
...btw... GREAT video! I'm using as inspiration for my work!

MrPhobos
Автор

I love your videos but you went to fast. Can you please slow and doing by step by step.

Marvin
Автор

Thank you. And how do you write on the desktop? Do you have a special hardware?

cinqueottavi
Автор

How about the configuration on server tac_plus.conf? May you please showing configuration on server!

techcambokh
Автор

which software has been used to do these lessons? Thanks

cinqueottavi
Автор

Is this how to do your lab "AAA and NTP Tshoot 2020-05-16" ?

dragonbeardable
Автор

could you connect multiple ps4's to a AAA server?

jeffstrehlow