Configuring TACACS authentication

You can configure TACACS authentication on your IBM QRadar system.

Procedure

  1. On the Admin tab, click Authentication.
  2. Click Authentication Module Settings.
  3. From the Authentication Module list, select TACACS Authentication.
  4. Configure the parameters:
    1. In the TACACS Server field, type the host name or IP address of the TACACS server.
    2. In the TACACS Port field, type the port of the TACACS server.
    3. From the Authentication Type list box, select the type of authentication you want to perform.

      Choose from the following options:

      Option Description
      ASCII American Standard Code for Information Interchange (ASCII) sends the user name and password in clear text.
      PAP Password Authentication Protocol (PAP) sends clear text between the user and the server. PAP is the default authentication type.
      CHAP Challenge Handshake Authentication Protocol (CHAP) establishes a Point-to-Point Protocol (PPP) connection between the user and the server.
      MSCHAP Microsoft Challenge Handshake Authentication Protocol (MSCHAP) authenticates remote Windows workstations.
    4. In the Shared Secret field, type the shared secret that QRadar uses to encrypt TACACS passwords for transmission to the TACACS server.
  5. Click Save Authentication Module.

What to do next

For TACACS user authentication, you must create a local QRadar user account that is the same as the TACACS account on the authentication server.