<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ACS 5.1 Primary / Standby config in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-5-1-primary-standby-config/m-p/1599167#M266442</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="color: #333333;"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;username admin pass admin&lt;BR /&gt;enable secret cisco123&lt;BR /&gt;tacacs-server host 1.1.1.1&lt;/P&gt;&lt;P&gt;tacacs-server key cisco&lt;/P&gt;&lt;P&gt;aaa new-model&lt;BR /&gt;aaa authentication login default group tacacs+ local&lt;/P&gt;&lt;P&gt;aaa authorization exec default group tacacs+ local&lt;/P&gt;&lt;P&gt;aaa accounting commands 15 default start-stop group tacacs+&lt;BR /&gt;aaa accounting connection default start-stop group tacacs+&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;SPAN style="font-color: #333333; "&gt;&lt;P&gt;&lt;BR /&gt;aaa authentication login notacacsforcosnole local&lt;BR /&gt;line con 0&lt;BR /&gt;login authentication notacacsforcosnole But still primary and standby config is left.&lt;/P&gt;&lt;/SPAN&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG style="font-family: arial black,avant garde; "&gt; but&amp;nbsp; i am not able to solve 3rd question ? Any one knows how to configure the primary and standby config?&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 07 Feb 2011 12:45:44 GMT</pubDate>
    <dc:creator>muhammad feroz</dc:creator>
    <dc:date>2011-02-07T12:45:44Z</dc:date>
    <item>
      <title>ACS 5.1 Primary / Standby config</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-1-primary-standby-config/m-p/1599165#M266420</link>
      <description>&lt;P&gt;Dear all&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Basic Setup -&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1st problem:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In the Test Lab : I have&amp;nbsp; Cisco ACS 1121 device&amp;nbsp; and in that i have Added all network devices&amp;nbsp; - routers and switches&lt;/P&gt;&lt;P&gt;Now i have to authenticate with Active directory. In active directory i have created users and added those users in to a group.&lt;/P&gt;&lt;P&gt;Can you show me any link which shows step by step instructions how add Cisco ACS in to active directory and create policies for authentication.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have Cisco ACS 5.1 documention but there is no step by step instructions for my requirement.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2nd Problem:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have another Cisco 1121 ACS, I want to configure this box as Backup or standby?&lt;/P&gt;&lt;P&gt;Can you show me any link which shows step by step instructions how to add 2 nd ACS box as secondary?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3rd Problem:&lt;/P&gt;&lt;P&gt;In the cisco routers i need add commands for authenticaiton&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;on console i need Local authentication and for telnet &amp;amp; ssh line tatacs authentication, if tacacas server fails than Local authentication.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;for that i need some commands lilke&lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;aaa authenXXX&lt;/P&gt;&lt;P&gt;aaa authrorizationXXX&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you let me know those commands.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sorry guys for 3 questions,&amp;nbsp; but i stuck in the middle, can any one help me.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 00:46:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-1-primary-standby-config/m-p/1599165#M266420</guid>
      <dc:creator>muhammad feroz</dc:creator>
      <dc:date>2019-03-11T00:46:58Z</dc:date>
    </item>
    <item>
      <title>Re: ACS 5.1 Primary / Standby config</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-1-primary-standby-config/m-p/1599166#M266434</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi guys&lt;/P&gt;&lt;P&gt;It seems no one is answered this question. not a problem.&lt;/P&gt;&lt;P&gt;I have solved some of them myself.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1Q answer@:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On ACS 1121 boxLets assume that ACS ip address: 1.1.1.1/24&amp;nbsp; and AD- 1.1.1.2/24 and Router ip address = 1.1.1.3/24&lt;/P&gt;&lt;P&gt;1st did setup ACS basic setup,&amp;nbsp; i have configured on E0 interface as 1.1.1.1/24.&lt;/P&gt;&lt;P&gt;To add this box in to domain, i must need to give these 2 comamnds&lt;/P&gt;&lt;P&gt;like&amp;nbsp; ip name-server 1.1.1.2&amp;nbsp; , ntp server 1.1.1.2 (assume my ad is also NTP server)&lt;/P&gt;&lt;P&gt;Make sure that time is same on ACS and AD domain controller.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;users and identity stores- external identity stores - active directory&amp;nbsp; - type doamin name, Administrator and password. - select test connection- it will join in domain&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;After this you need to add a specific AD group for authentication - to do this&lt;/P&gt;&lt;P&gt;You get a new tab directory groups in the - users and identity stores- external identity stores - active directory.&lt;/P&gt;&lt;P&gt;In the directory groups&amp;nbsp; - with mouse click - select option ( do not add manually the groups - it did not work for me)&lt;/P&gt;&lt;P&gt;select - you can see the list of groups - select it . that's it.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Create a rule&lt;/P&gt;&lt;P&gt;to do this come to Access-policies - Access services - Default Devicee admin -&lt;/P&gt;&lt;P&gt;identity&amp;nbsp; - here you select AD (authentication to ad groups)&lt;/P&gt;&lt;P&gt;authorization - create a new rule - just click AD1:external groups-select the group - rest all default - it mean any&lt;/P&gt;&lt;P&gt;now you can login.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 07 Feb 2011 12:43:50 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-1-primary-standby-config/m-p/1599166#M266434</guid>
      <dc:creator>muhammad feroz</dc:creator>
      <dc:date>2011-02-07T12:43:50Z</dc:date>
    </item>
    <item>
      <title>Re: ACS 5.1 Primary / Standby config</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-1-primary-standby-config/m-p/1599167#M266442</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="color: #333333;"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;username admin pass admin&lt;BR /&gt;enable secret cisco123&lt;BR /&gt;tacacs-server host 1.1.1.1&lt;/P&gt;&lt;P&gt;tacacs-server key cisco&lt;/P&gt;&lt;P&gt;aaa new-model&lt;BR /&gt;aaa authentication login default group tacacs+ local&lt;/P&gt;&lt;P&gt;aaa authorization exec default group tacacs+ local&lt;/P&gt;&lt;P&gt;aaa accounting commands 15 default start-stop group tacacs+&lt;BR /&gt;aaa accounting connection default start-stop group tacacs+&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;SPAN style="font-color: #333333; "&gt;&lt;P&gt;&lt;BR /&gt;aaa authentication login notacacsforcosnole local&lt;BR /&gt;line con 0&lt;BR /&gt;login authentication notacacsforcosnole But still primary and standby config is left.&lt;/P&gt;&lt;/SPAN&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG style="font-family: arial black,avant garde; "&gt; but&amp;nbsp; i am not able to solve 3rd question ? Any one knows how to configure the primary and standby config?&lt;/STRONG&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 07 Feb 2011 12:45:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-1-primary-standby-config/m-p/1599167#M266442</guid>
      <dc:creator>muhammad feroz</dc:creator>
      <dc:date>2011-02-07T12:45:44Z</dc:date>
    </item>
  </channel>
</rss>

