Reference Guide
TACACS+ Access Manager
Basic Configurations for TACACS+ Devices
add a new element type if the properties of the existing element types do not match the properties of the new devices (see section docid\ yphnjcd13xltk6fpgzcli for details on how to add an element type) add a new device group if the realms or properties of the existing device groups do not match the new devices (see the section docid 0zgnyitbe7 qp3bhqr9 v for details on how to add a new device group) add the radius/tacacs+ secret as globalsecretkey to the device group (refer to section device group properties for details on how to add a device group property) add the common enable password globalenablepassword property to the device group , if your device prompts you for an enabled password to run some scripts add the device using the new device discovery feature on the device inventory screen you can use sshv2 as the protocol select the element type and the device groups you just created (see section docid\ z3 txauo9otqiz8j0r1gt for details on how to add a device using new device discovery ) add a device group realm between the device group and the user groups that will have access (see section docid\ w7zy5pzbqla8wnuascfzw for details on how to add a device group realm) add radius and tacacs+ attributes as policy keys (described below) add command level white and black keys as policy keys (see section docid\ tnmmrxnpirhdp8lscchmj for details on how to define policy keys for white key/black key commands or radius and tacacs+ attributes) create policy groups for the white key, black key, radius, and tacacs+ attribute policy keys (see section docid\ dybwylubj99 o0k1tabw for details on how to create policy groups) create policy realms between the newly created policy groups and device group realms (see section docid\ mm 6zijktjhnn7eyhg56j for details on how to create policy realms)