|
楼主 |
发表于 2017-3-3 15:51:22
|
显示全部楼层
Q121:
aaa authentication login default group radius group tacacs+ local
Refer to the exhibit.If R1 contacts the RADIUS server but is unable to find
the user name in the server database,how will R1 respond?
A.It will attempt to contact the TACACS+ server
B.It will prompt the user to enter a new username
C.It will attempt to authenticate the user against the local database
D.It will deny the user access
Spoto answer is D while Braindump answer is A
then the right answer is A refereeing to Cisco
http://www.cisco.com/c/en/us/td/ ... cur_c/scfathen.html
Method List Examples
Suppose the system administrator has decided on a security solution where all interfaces will use the same authentication methods to authenticate PPP connections. In the RADIUS group, R1 is contacted first for authentication information, then if there is no response, R2 is contacted. If R2 does not respond, T1 in the TACACS+ group is contacted; if T1 does not respond, T2 is contacted. If all designated servers fail to respond, authentication falls to the local username database on the access server itself. To implement this solution, the system administrator would create a default method list by entering the following command:
<a name="wp1000947" style="margin: 0px; padding: 0px; border-width: 0px; border-style: initial; border-color: initial; font-variant-numeric: inherit; font-stretch: inherit; line-height: inherit; font-family: CiscoSans, Arial, sans-serif; vertical-align: baseline; color: rgb(0, 127, 171); word-break: break-all; word-wrap: break-word; background-color: rgb(255, 255, 255);">
aaa authentication ppp default group radius group tacacs+ local |
沙发
2017-3-3 15:51:22
回复(0)
收起回复
|