<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACS 5.3 local user authentication in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-5-3-local-user-authentication/m-p/2124811#M147087</link>
    <description>&lt;P&gt;I want to have a local user in ACS that is permitted to login to routers. I have TACACS with AD already working but cannot get a local user to work. I used to do this in ACS 4.x.&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;I created a user in the internal identity store.&lt;BR /&gt;&lt;/LI&gt;&lt;LI&gt;I tried configuring a policy to allow this users TACACS authentication multiple ways to no avail.&lt;BR /&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I cannot find a config example doc and cannot figure it out from the user guide as the documention is sorely lacking.&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 02:46:50 GMT</pubDate>
    <dc:creator>Vin Daniell</dc:creator>
    <dc:date>2019-03-11T02:46:50Z</dc:date>
    <item>
      <title>ACS 5.3 local user authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-3-local-user-authentication/m-p/2124811#M147087</link>
      <description>&lt;P&gt;I want to have a local user in ACS that is permitted to login to routers. I have TACACS with AD already working but cannot get a local user to work. I used to do this in ACS 4.x.&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;I created a user in the internal identity store.&lt;BR /&gt;&lt;/LI&gt;&lt;LI&gt;I tried configuring a policy to allow this users TACACS authentication multiple ways to no avail.&lt;BR /&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I cannot find a config example doc and cannot figure it out from the user guide as the documention is sorely lacking.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 02:46:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-3-local-user-authentication/m-p/2124811#M147087</guid>
      <dc:creator>Vin Daniell</dc:creator>
      <dc:date>2019-03-11T02:46:50Z</dc:date>
    </item>
    <item>
      <title>ACS 5.3 local user authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-3-local-user-authentication/m-p/2124812#M147089</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Vin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;What's happening in your scenario is that you have your Access Policy/Identity using only AD1, this will force the ACS to check only in the Active Directory database.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you want to use both databases you need to create an Identity Store Sequence, this is done under "Users and Identity Stores/&lt;A target="_self"&gt;External Identity Stores/&lt;/A&gt;&lt;A target="_self"&gt;Identity Store Sequences"&lt;/A&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In this section you need to define both databases like the example below:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/7/7/7/112777-IS.JPG" class="jive-image" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then you need to use this option under Identity. Check below:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/1/8/7/112781-IS2.JPG" class="jive-image" /&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know if it helps.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Nov 2012 20:32:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-3-local-user-authentication/m-p/2124812#M147089</guid>
      <dc:creator>mauzamor</dc:creator>
      <dc:date>2012-11-13T20:32:36Z</dc:date>
    </item>
    <item>
      <title>ACS 5.3 local user authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-3-local-user-authentication/m-p/2124813#M147095</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That did not seem to work. Here's what I have. &lt;/P&gt;&lt;P&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/2/9/7/112792-pic1.jpg" class="jive-image" /&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/3/9/7/112793-pic2.jpg" class="jive-image" /&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/4/9/7/112794-pic3.jpg" class="jive-image" /&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/5/9/7/112795-pic4.jpg" class="jive-image" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Nov 2012 20:50:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-3-local-user-authentication/m-p/2124813#M147095</guid>
      <dc:creator>Vin Daniell</dc:creator>
      <dc:date>2012-11-13T20:50:15Z</dc:date>
    </item>
    <item>
      <title>ACS 5.3 local user authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-3-local-user-authentication/m-p/2124814#M147097</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Oh and here's the error I'm getting.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/7/9/7/112797-pic5.jpg" class="jive-image" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Nov 2012 20:52:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-3-local-user-authentication/m-p/2124814#M147097</guid>
      <dc:creator>Vin Daniell</dc:creator>
      <dc:date>2012-11-13T20:52:00Z</dc:date>
    </item>
    <item>
      <title>ACS 5.3 local user authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-3-local-user-authentication/m-p/2124815#M147099</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Ok... it seems to be working now. I set the identity source to "internal users" then back to "TACACS+ search sequence" and now it's working.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Nov 2012 20:55:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-3-local-user-authentication/m-p/2124815#M147099</guid>
      <dc:creator>Vin Daniell</dc:creator>
      <dc:date>2012-11-13T20:55:29Z</dc:date>
    </item>
    <item>
      <title>ACS 5.3 local user authentication</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-3-local-user-authentication/m-p/2124816#M147101</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Glad to know it's working now. Usually we use Internal Users first as the ACS database is smaller than the Active Directory.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rate if it helps.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 13 Nov 2012 20:59:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-3-local-user-authentication/m-p/2124816#M147101</guid>
      <dc:creator>mauzamor</dc:creator>
      <dc:date>2012-11-13T20:59:08Z</dc:date>
    </item>
  </channel>
</rss>

