trên các tuyến đường nối tiếp bằng cách sử dụng PPP. Nếu máy chủ RADIUS không! đáp ứng, sau đó địa phương cấp phép mạng sẽ được thực hiện. aaa phép mạng dialup2 bán kính địa phương tên người dùng và mật khẩu để được sử dụng cho PPP CHAP | Securing Dial-In Access on serial lines using PPP. If the RADIUS server fails to respond then local network authorization will be performed. aaa authorization network dialup2 radius local username and password to be used for the PPP CHAP username staff password letmein radius-server host radius-server key myRaDiUSpassWoRd interface group-async 1 group-range 1 16 encapsulation ppp selects CHAP as the method of PPP authentication and applies the dialup method list to the specified interfaces. ppp authentication chap dialup applies the dialup2 network authorization method list to the specified interfaces. ppp authorization dialup2 line 1 16 command used to allow a PPP session to start up automatically autoselect ppp command used to display the username and password prompt without pressing the Enter key. After the user logs in the autoselect function in this case PPP begins. autoselect during-login http cpress cc td cpress internl dns 22 of 103 02 02 2001 Securing Dial-In Access command used to apply the staff method list for login authentication login authentication staff command to configure modems attached to the selected lines to accept only incoming calls modem dialin Sample TACACS Database Syntax Listing 10-3 shows the syntax used in CiscoSecure the Cisco TACACS Access Control Server for its TACACS database. The syntax may change as more functionality is added this example is given to show what you can configure on the TACACS server side. Most TACACS servers employ similar functionality and often also have a simple-to-use graphical user interface that creates the appropriate database for you. Listing 10-3 The Syntax for the CiscoSecure Server unknown_user user group user name group name password clear chap arap pap des password from dd mmm yy until dd mmm yy until dd mmm yy password skey system no_password from dd mmm yy until dd mmm yy until dd mmm yy password file file name from dd mmm yy until dd mmm yy until dd .