The Local Username Database

You have the option to configure a local security database in each router, containing usernames and passwords. This is useful when you have a small set of users and a few routers that don't warrant the convenience of a AAA server. The local database can also act as a backup for usernames and passwords if the AAA server is unavailable or unreachable. To use the local database as a backup to your AAA server, configure an authentication list with the local keyword following the radius or tacacs+ keyword:

RTA(config)#aaa authentication ppp FOO radius local

To populate the local username database, use the username global configuration command:

RTA(config)^service password-encryption RTA(config)#username donn password apple2 RTA(config)#username Shirley pass tequila55 RTA(config)#username terry pass bigvan! RTA(config)#username wes pass parson3 RTA(config)#username alex pass toonman21

where scrvice password-encryption (if it's not already enabled) ensures that all passwords are stored in the encrypted format.

The command username donn password apple2 creates a user whose login name is donn and password is applc2.

The remaining lines continue to populate the local database with the username command and login-password pairs.

Continue reading here: Disable TCP and UDP Small Servers

Was this article helpful?

0 0