authentication-reliability auto-change-next

Function

The authentication-reliability auto-change-next command allows a device to automatically switch to local authentication when the remote HWTACACS authentication fails.

The undo authentication-reliability auto-change-next command restores the default configuration.

By default, after remote HWTACACS authentication fails, the device can switch to the local authentication only when the HWTACACS server completely fails to respond. In other situations, the device will not switch to local authentication.

Format

authentication-reliability auto-change-next

undo authentication-reliability auto-change-next

Parameters

None

Views

Authentication scheme view

Default Level

3: Management level

Task Name and Operations

Task Name Operations
aaa write

Usage Guidelines

After a device is configured with the authentication mode of "HWTACACS authentication prior to local authentication", the device switches to the local authentication only when the HWTACACS server completely fails to respond. In other situations, the device does not switch to local authentication. Once the HWTACACS server becomes abnormal, users will not switch to the local authentication mode. As a result, the users fail to properly go online. In this case, you can run this command to allow a device to automatically switch to local authentication when the remote HWTACACS authentication fails.

Example

# Configure the device to automatically switch to local authentication when the HWTACACS server completely fails to respond.
<HUAWEI> system-view
[~HUAWEI] aaa
[~HUAWEI-aaa] authentication-scheme a1
[*HUAWEI-aaa-authen-a1] commit
[~HUAWEI-aaa-authen-a1] authentication-reliability auto-change-next
Copyright © Huawei Technologies Co., Ltd.
Copyright © Huawei Technologies Co., Ltd.
< Previous topic Next topic >