<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Cisco ACS 5.2 with NX-OS devices (Nexus) - User issues in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705030#M282313</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Neal. this is great screen capture.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 06 Aug 2012 15:46:33 GMT</pubDate>
    <dc:creator>Marlon Malinao</dc:creator>
    <dc:date>2012-08-06T15:46:33Z</dc:date>
    <item>
      <title>Cisco ACS 5.2 with NX-OS devices (Nexus) - User issues</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705023#M281927</link>
      <description>&lt;P&gt;Hey Community, I am having a really strange issue with Cisco ACS 5.2 and NX-OS Nexus Devices. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I create an account on ACS, let's call it User1, and give it privilege 15. With User1, I'm able to access on all of our IOS, IOS-XE, ASA, and PIX devices with privilege 15. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When I use that same User1 account into our NEXUS devices, I do NOT get privilege 15 access. As you probably know, NEXUS devices have roles: pre-defined or custom-made roles. So I assumed I would get the role of 'network-admin' (priv 15 read/write) with User1 when logging in, but instead I get the role of 'vdc-operator' (priv 1 read-only). &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So then I tried to tweak User1 and give it network-admin under Shell profile &amp;gt;&amp;gt; Custom Attributes. I logged into the NEXUS and sure enough I was able to get network-admin access. However, my access to ALL the other devices (IOS, ASA, PIX, etc) doesn't work AT ALL! I'm not even able to log in with my username and password to these devices.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Has anyone ever run into this problem? Please Help! &lt;SPAN __jive_emoticon_name="silly" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/images/emoticons/silly.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;neocec&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 01:11:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705023#M281927</guid>
      <dc:creator>Giovanni Ceci</dc:creator>
      <dc:date>2019-03-11T01:11:16Z</dc:date>
    </item>
    <item>
      <title>Cisco ACS 5.2 with NX-OS devices (Nexus) - User issues</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705024#M281995</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;This is a common issue when mixing authorization policies with RBAC and IOS devices, the av-pair that you created needs to be set to "optional" instead of "mandatory", please make this change and you will be able to get access to all your devices.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Tarik&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 29 Jun 2011 07:39:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705024#M281995</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2011-06-29T07:39:35Z</dc:date>
    </item>
    <item>
      <title>Cisco ACS 5.2 with NX-OS devices (Nexus) - User issues</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705025#M282041</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hey Tarik,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You are a genius! This solution totally worked! I can't thank you enough. Can't believe it was that simple! 5 Stars!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do you know if there's any Cisco documentation out there that states this?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Neocec&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 06 Jul 2011 19:51:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705025#M282041</guid>
      <dc:creator>Giovanni Ceci</dc:creator>
      <dc:date>2011-07-06T19:51:06Z</dc:date>
    </item>
    <item>
      <title>Cisco ACS 5.2 with NX-OS devices (Nexus) - User issues</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705026#M282116</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Neocec,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes here is the documentation that provides insight to the this (they make reference to the = and the *.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/switches/datacenter/sw/5_x/nx-os/security/configuration/guide/Cisco_Nexus_7000_NX-OS_Security_Configuration_Guide__Release_5.x_chapter6.html#con_1473433"&gt;http://www.cisco.com/en/US/docs/switches/datacenter/sw/5_x/nx-os/security/configuration/guide/Cisco_Nexus_7000_NX-OS_Security_Configuration_Guide__Release_5.x_chapter6.html#con_1473433&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Tarik&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 15 Jul 2011 06:14:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705026#M282116</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2011-07-15T06:14:39Z</dc:date>
    </item>
    <item>
      <title>Cisco ACS 5.2 with NX-OS devices (Nexus) - User issues</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705027#M282160</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Tarik,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Have you seen any issues with Tacacs and Nexus switches where you get an error stating "&lt;/P&gt;&lt;P&gt;Remote AAA servers unreachable;" but when you look at the ACS logs I see successful authentication for that user.&amp;nbsp; I'm stumped!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Robert&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Mar 2012 19:17:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705027#M282160</guid>
      <dc:creator>rpettus75</dc:creator>
      <dc:date>2012-03-08T19:17:39Z</dc:date>
    </item>
    <item>
      <title>Cisco ACS 5.2 with NX-OS devices (Nexus) - User issues</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705028#M282236</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi, &lt;A _jive_internal="true" href="https://community.cisco.com/people/neocec1981" id="jive-5444975117627361227654" onmouseout="" onmouseover=""&gt;Giovanni Ceci&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you show me how did you create your shell profile, and Authorization Policy to be used both by IOS and NX-OS?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks,&lt;/P&gt;&lt;P&gt;Marlon&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 04 Jun 2012 06:16:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705028#M282236</guid>
      <dc:creator>Marlon Malinao</dc:creator>
      <dc:date>2012-06-04T06:16:27Z</dc:date>
    </item>
    <item>
      <title>Cisco ACS 5.2 with NX-OS devices (Nexus) - User issues</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705029#M282271</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Here is how to create the shell profile so your users will have network-admin privlidges.&lt;BR /&gt;I am using ACS v5.3 and nexus 5ks running code 5.1.3&lt;/P&gt;&lt;P&gt;I h&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/2/3/9/93932-ACSrole.jpg" class="jive-image" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 29 Jun 2012 21:04:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705029#M282271</guid>
      <dc:creator>Neal Gravatt</dc:creator>
      <dc:date>2012-06-29T21:04:12Z</dc:date>
    </item>
    <item>
      <title>Cisco ACS 5.2 with NX-OS devices (Nexus) - User issues</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705030#M282313</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Neal. this is great screen capture.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 06 Aug 2012 15:46:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705030#M282313</guid>
      <dc:creator>Marlon Malinao</dc:creator>
      <dc:date>2012-08-06T15:46:33Z</dc:date>
    </item>
    <item>
      <title>Cisco ACS 5.2 with NX-OS devices (Nexus) - User issues</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705031#M282350</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Guys.&lt;/P&gt;&lt;P&gt;What should be the optimal ACS version to support both IOS and NX-OS?&lt;/P&gt;&lt;P&gt;I may also include ASR 5Ks.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Sep 2012 02:22:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705031#M282350</guid>
      <dc:creator>ar</dc:creator>
      <dc:date>2012-09-11T02:22:25Z</dc:date>
    </item>
    <item>
      <title>Cisco ACS 5.2 with NX-OS devices (Nexus) - User issues</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705032#M282378</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Allan,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ACS 5.3 will be your best option, all version support all of the IOS, NX-OS, and IOS-XR, and even CRS. Its a matter of sending the proper task-group av/pairs back in the authorization profile.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Sep 2012 03:09:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705032#M282378</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-09-11T03:09:06Z</dc:date>
    </item>
    <item>
      <title>I have the same problem too,</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705033#M282397</link>
      <description>&lt;P&gt;I have the same problem too, i hope your statement works for me... I´ll update tomorrow about the results..&lt;/P&gt;</description>
      <pubDate>Sun, 05 Jul 2015 21:36:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-5-2-with-nx-os-devices-nexus-user-issues/m-p/1705033#M282397</guid>
      <dc:creator>miguelfilipe2001</dc:creator>
      <dc:date>2015-07-05T21:36:57Z</dc:date>
    </item>
  </channel>
</rss>

