Using the Management Ethernet Interface
Common Ethernet Management Tasks
7
Cisco ASR 1000 Series Aggregation Services Routers Software Configuration Guide
The same concept is true for configuring a TACACS+ server group. To group the Management VRF as
part of a TACACS+ server group, enter the ip vrf forwarding Mgmt-intf command when configuring
the TACACS+ server group.
RADIUS Server Group Configuration
Router(config)# aaa group server radius hello
Router(config-sg-radius)# ip vrf f
orwarding Mgmt-intf
TACACS+ Server Group Example
outer(config)# aaa group server tacacs+ hello
Router(config-sg-tacacs+)# ip vrf
forwarding Mgmt-intf
VTY lines with ACL
To ensure an access control list (ACL) is attached to vty lines that are and are not using VRF, use the
vrf-also option when attaching the ACL to the vty lines.
Router(config)# line vty 0 4
Router(config-line)# access-class
90 in vrf-also