AAA step di configurazione switch/router Cisco via Tacacs
aaa new-model
!
aaa group server tacacs+ DeviceAccess
server <ip_address_server_tacacs1>
server <ip_address_server_tacacs2>
!
aaa authentication login default group DeviceAccess local
aaa authentication login localauth local
aaa authorization console
aaa authorization exec default group DeviceAccess local
aaa authorization exec LOGIN local
aaa authorization exec localauth local
!
tacacs-server host <ip_address_server_tacacs1> key <key>
tacacs-server host <ip_address_server_tacacs2> key <key>
tacacs-server directed-request
!
line con 0
authorization exec localauth
login authentication localauth
line vty 0 4
transport input ssh
line vty 5 15
transport input ssh
!