Cisco IOS-XR: Difference between revisions

From Dave-Wiki
Jump to navigation Jump to search
(Created page with "=Initial Config= ==OOB Management & SSH Config== hostname router-1 domain vrf management name davehome.net domain vrf management name-server 10.4.4.4 domain vrf management name-server 10.8.8.8 vrf management description OOB Management address-family ipv4 unicast ! ! control-plane management-plane out-of-band vrf management interface MgmtEth0/RP0/CPU0/0 root ! ! ! interface MgmtEth0/RP0/CPU0/0 vrf manag...")
 
No edit summary
Line 38: Line 38:
   ssh server v2
   ssh server v2
   ssh server vrf management
   ssh server vrf management
==TACACS Config==
  tacacs source-interface MgmtEth0/RP0/CPU0/0 vrf management
  aaa group server tacacs+ authservers
  vrf management
  server-private 10.9.1.1 port 49
    key 0 [[insert key here]]
  !
  server-private 10.9.2.2 port 49
    key 0 [[insert key here]]
  !
  !
  aaa accounting exec default start-stop group authservers
  aaa accounting system default start-stop group authservers
  aaa accounting commands default start-stop group authservers
  aaa authorization exec default group authservers local
  aaa authorization commands default group authservers local
  aaa authentication login default group authservers local

Revision as of 00:16, 13 February 2024

Initial Config

OOB Management & SSH Config

 hostname router-1
 
 domain vrf management name davehome.net
 domain vrf management name-server 10.4.4.4
 domain vrf management name-server 10.8.8.8
 
 vrf management
  description OOB Management
  address-family ipv4 unicast
  !
 !
 control-plane
  management-plane
   out-of-band
    vrf management
    interface MgmtEth0/RP0/CPU0/0
    root
   !
  !
 !
 
 interface MgmtEth0/RP0/CPU0/0
  vrf management
  ipv4 address 10.16.0.2 255.255.255.0
  no shutdown
 !         
 router static
  vrf management
   address-family ipv4 unicast
    0.0.0.0/0 10.16.0.1
   !
  !
 !
 ssh server v2
 ssh server vrf management

TACACS Config

 tacacs source-interface MgmtEth0/RP0/CPU0/0 vrf management
 aaa group server tacacs+ authservers
  vrf management
  server-private 10.9.1.1 port 49
   key 0 insert key here
  !
  server-private 10.9.2.2 port 49
   key 0 insert key here
  !
 !
 aaa accounting exec default start-stop group authservers
 aaa accounting system default start-stop group authservers
 aaa accounting commands default start-stop group authservers
 aaa authorization exec default group authservers local
 aaa authorization commands default group authservers local
 aaa authentication login default group authservers local