summaryrefslogtreecommitdiff
path: root/docs
diff options
context:
space:
mode:
authorRobert Göhler <github@ghlr.de>2023-09-26 22:11:13 +0200
committerGitHub <noreply@github.com>2023-09-26 22:11:13 +0200
commitb15d0560a2c9f2df2600b260671ca14e45045cb0 (patch)
treeaa95d14ad15238fc09237782db1a60f0000534ed /docs
parentf635b6e714608187f14185f8898d7e04c4299ba8 (diff)
parent6f8c3035102342d2fca7d7109b35954b7a9c5124 (diff)
downloadvyos-documentation-b15d0560a2c9f2df2600b260671ca14e45045cb0.tar.gz
vyos-documentation-b15d0560a2c9f2df2600b260671ca14e45045cb0.zip
Merge pull request #1095 from aslanvyos/patch-2
Update login.rst
Diffstat (limited to 'docs')
-rw-r--r--docs/configuration/system/login.rst28
1 files changed, 28 insertions, 0 deletions
diff --git a/docs/configuration/system/login.rst b/docs/configuration/system/login.rst
index bb7bdc86..0cbcecde 100644
--- a/docs/configuration/system/login.rst
+++ b/docs/configuration/system/login.rst
@@ -275,6 +275,22 @@ Configuration
Source all connections to the RADIUS servers from given VRF `<name>`.
+Configuration Example
+---------------------
+
+.. code-block:: none
+
+ set system login radius server 192.168.0.2 key 'test-vyos'
+ set system login radius server 192.168.0.2 port '1812'
+ set system login radius server 192.168.0.2 timeout '5'
+ set system login radius source-address '192.168.0.1'
+
+
+ If there is no communication between VyOS and RADIUS server users can
+ authenticate from local user accounts. During authentication from the local
+ accounts users can observe some timeouts. Timeout in seconds depends on
+ the configured timeout option.
+
.. hint:: If you want to have admin users to authenticate via RADIUS it is
essential to sent the ``Cisco-AV-Pair shell:priv-lvl=15`` attribute. Without
the attribute you will only get regular, non privilegued, system users.
@@ -328,6 +344,18 @@ Configuration
Source all connections to the TACACS servers from given VRF `<name>`.
+Configuration Example
+---------------------
+
+.. code-block:: none
+
+ set system login tacacs server 192.168.0.2 key 'test-vyos'
+ set system login tacacs server 192.168.0.2 port '49'
+ set system login tacacs source-address '192.168.0.1'
+
+
+ If there is no communication between VyOS and TACACS server users can
+ authenticate from local user accounts.
Login Banner
============