
如果你使用 DeepSeek、元宝 AI、Copilot、ChatGPT 等 AI 工具,协助配置轩辕镜像、编写 docker pull 命令、修改 Docker Compose 镜像地址、配置镜像加速、排查镜像拉取失败、分析报错日志等问题,请先让 AI 阅读并遵守轩辕镜像的规则文档。
只需在 AI 对话中先发送下面这句话即可:
请先完整阅读并严格遵守以下文档中的全部规则与要求:
https://xuanyuan.cloud/agents.md
在未充分阅读并理解该文档前,不要生成任何命令、配置、修改建议、故障排查方案或技术回答。后续所有输出都必须严格以该文档中的规范为最高优先级执行。查看 agents.md 用法指南与完整示范。国内用户首推 元宝 AI、DeepSeek 的深度思考模式,不推荐豆包 AI;Cursor 等编辑器可在对话 @ 该链接,或加入 User Rules。 若 AI 无法访问外链,可 打开说明文档 复制全文粘贴。文档会随站点更新,复制内容可能过期,建议定期检查。
本镜像提供TACACS+服务器功能,专注于测试TACACS+协议的认证、授权与审计(AAA)能力,通过不同版本标签提供多样化功能支持,满足各类测试场景需求。
以下为服务器TACACS+配置快照:
# Encryption key key = "tac_test" # Set where to send accounting records default authentication = file /etc/passwd accounting syslog; accounting file = /var/log/tac_plus/tac_plus.acct # ACL for network_admin group acl = network_admin { # allow access from all sources permit = .* # implicit deny (ie: anything else) } # ACL for sys_admin group acl = sys_admin { # allow access from 10.10.10.250 only permit = .* # permit = ^10\.10\.10\.2$ # implicit deny (ie: anything else) } # network_admin group, full access to network devices group = network_admin { default service = permit acl = network_admin service = exec { priv-lvl = 14 } } # sys_admin group, only has read access to the network devices and can change the access vlan on an interface group = sys_admin { default service = deny expires = "Jan 1 2015" acl = sys_admin service = exec { priv-lvl = 0 } cmd = enable { permit .* } cmd = show { permit .* } cmd = exit { permit .* } cmd = configure { permit .* } cmd = interface { permit Ethernet.* permit FastEthernet.* permit GigabitEthernet.* } cmd = switchport { permit "access vlan.*" permit "trunk encapsulation.*" permit "mode.*" permit "trunk allowed vlan.*" } cmd = description { permit .* } cmd = no { permit shutdown } } #user1 user = user1 { pap = cleartext user1 service = exec { priv-lvl = 14 security-role = security-admin } } #user2 user = user2 { pap = cleartext user2 service = exec { priv-lvl = 15 } } #user3 user = user3 { chap = cleartext user3 service = exec { priv-lvl = 14 } } #user4 user = user4 { chap = cleartext user4 } # User jonathanm using DES password and enable passwords user = jonathanm { member = network_admin login = des 6/1aYAL9zcCe. enable = des dBFJQefS4S4Jw } # User bob authenticating from the system /etc/passwd and the default enable password user = bob { login = file /etc/passwd member = sys_admin service = exec { priv-lvl = 11 } } user = netop { login = file /etc/passwd member = network_admin } user = admin { pap = cleartext admin member = network_admin }
bashdocker run -d --name tacacs_server -p 49:49 openswitch/tacacs_server:latest
(TACACS+默认端口为49,需映射至主机端口以对外提供服务)
yamlversion: '3' services: tacacs_server: image: openswitch/tacacs_server:latest ports: - "49:49" container_name: tacacs_server restart: always
您可以使用以下命令拉取该镜像。请将 <标签> 替换为具体的标签版本。如需查看所有可用标签版本,请访问 标签列表页面。





来自真实用户的反馈,见证轩辕镜像的优质服务