<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACS 4.2 replication help in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-4-2-replication-help/m-p/1618741#M266389</link>
    <description>&lt;P&gt;Hi All ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; I am new to wireless LAN authencation , I have about 1000 Wireless access point &amp;amp; 15,000 users in my enterprise network , we have 3 acs server version 3.3 ( primary ,secondary , incountry ) , Now we are upgrading this acs server 3.3 to acs 4.2 version . Primary server 4.2 is ready with all aaa clients defined ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; I need to replicate all database from primary server to secondary server and to incountry server . wht all things to be predefined before performing replication .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; similarly my end user accounts NAS&amp;nbsp; has been defined separately to an windows database , whether i need to defined this windows database to my both primary &amp;amp; secondary sever separatley else my replication will replicate all the things from primary server .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; I have some help documents for enterprise wireless lan authencations , Thank you&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 00:47:42 GMT</pubDate>
    <dc:creator>sansarav720e</dc:creator>
    <dc:date>2019-03-11T00:47:42Z</dc:date>
    <item>
      <title>ACS 4.2 replication help</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-4-2-replication-help/m-p/1618741#M266389</link>
      <description>&lt;P&gt;Hi All ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; I am new to wireless LAN authencation , I have about 1000 Wireless access point &amp;amp; 15,000 users in my enterprise network , we have 3 acs server version 3.3 ( primary ,secondary , incountry ) , Now we are upgrading this acs server 3.3 to acs 4.2 version . Primary server 4.2 is ready with all aaa clients defined ,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; I need to replicate all database from primary server to secondary server and to incountry server . wht all things to be predefined before performing replication .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; similarly my end user accounts NAS&amp;nbsp; has been defined separately to an windows database , whether i need to defined this windows database to my both primary &amp;amp; secondary sever separatley else my replication will replicate all the things from primary server .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; I have some help documents for enterprise wireless lan authencations , Thank you&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 00:47:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-4-2-replication-help/m-p/1618741#M266389</guid>
      <dc:creator>sansarav720e</dc:creator>
      <dc:date>2019-03-11T00:47:42Z</dc:date>
    </item>
    <item>
      <title>Re: ACS 4.2 replication help</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-4-2-replication-help/m-p/1618742#M266397</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Well, To start off, I would say that the secondary and incountry server should be on same version that is 4.2 and same patch.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;The following items cannot be replicated:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;•IP pool definitions&lt;BR /&gt;•ACS certificate and private key files.&lt;BR /&gt;•Dynamically-mapped users.&lt;BR /&gt;•Settings on the ACS Service Management page in the System Configuration section.&lt;BR /&gt;•RDBMS Synchronization settings.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;Also make sure that we don't have any firewall in between two acs servers.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;Also, NAS device can never be configured for windows database it will always send the request to tacacs/radius and authentication server will decide wehther it should be authenticated through the internal user database or AD depending upon the user location.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;However, if you didn't mean that and you wanted to say that half of the devices are configured to ACS for their internal username/password and other half devices confgured for secondary ACS pointed towards AD then in this case replication will always override the known groups.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;Configurating replication&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080742f60.shtml"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2030/products_configuration_example09186a0080742f60.shtml&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;Rgds, Jatin&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Do rate helpful posts~&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 04 Feb 2011 01:10:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-4-2-replication-help/m-p/1618742#M266397</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2011-02-04T01:10:52Z</dc:date>
    </item>
  </channel>
</rss>

