[tac_plus] Configuring a/v pair expected by Brocade VDX switch

john heasley heas at shrubbery.net
Fri Sep 30 20:59:48 UTC 2011


Fri, Sep 30, 2011 at 01:39:32PM -0700, Jathan McCollum:
> The documentation indicates the device is expecting the server to send an
> a/v pair that specifies the authenticated user's role. I assume the value
> would be "admin" in this case. The problem is that nowhere in the
> documentation so far have I seen what attribute the device is expecting.
> There may also be a unique service type (again similar to JUNOS'
> "junos-exec") that is being expected.
> 
> So... After all that background, anyone had experience with this platform
> and gotten it working successfully w/ tac_plus?

none, but some devices send the av pairs they have when they perform
authen and/or author.  if you enable the appropriate debugging knobs, it
might reveal it to you.

or, take the image that you load on the box, uncompress it, unzip it or
whatever their packaging method is, then run strings(1) on it and look
for strings that might be related to authorization.  then send a bomb to
brocade offices.


More information about the tac_plus mailing list