The Local Username Database
You have the option to configure a local security database in each router, containing usernames and passwords. This is useful when you have a small set of users and a few routers that don't warrant the convenience of a AAA server. The local database can also act as a backup for usernames and passwords if the AAA server is unavailable or unreachable. To use the local database as a backup to your AAA server, configure an authentication list with the local keyword following the radius or tacacs+ keyword:
RTA(config)#aaa authentication ppp FOO radius local
To populate the local username database, use the username global configuration command:
RTA(config)^service password-encryption RTA(config)#username donn password apple2 RTA(config)#username Shirley pass tequila55 RTA(config)#username terry pass bigvan! RTA(config)#username wes pass parson3 RTA(config)#username alex pass toonman21
where scrvice password-encryption (if it's not already enabled) ensures that all passwords are stored in the encrypted format.
The command username donn password apple2 creates a user whose login name is donn and password is applc2.
The remaining lines continue to populate the local database with the username command and login-password pairs.
Continue reading here: Disable TCP and UDP Small Servers
Was this article helpful?