<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic multiple remote agent in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/multiple-remote-agent/m-p/1642950#M287994</link>
    <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;I've installed ACS 4 version. we have multiple device group which all of them use the same AD for authentication. we have created multiple NDG, now I need to create remote agent with the same IP address for each NDG but ACS doesn't let me to create multiple remote agent with the same IP address. how can I create multiple NDG, but all use the same remote agent?&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;Alex&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 00:42:02 GMT</pubDate>
    <dc:creator>alex goshtaei</dc:creator>
    <dc:date>2019-03-11T00:42:02Z</dc:date>
    <item>
      <title>multiple remote agent</title>
      <link>https://community.cisco.com/t5/network-access-control/multiple-remote-agent/m-p/1642950#M287994</link>
      <description>&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;I've installed ACS 4 version. we have multiple device group which all of them use the same AD for authentication. we have created multiple NDG, now I need to create remote agent with the same IP address for each NDG but ACS doesn't let me to create multiple remote agent with the same IP address. how can I create multiple NDG, but all use the same remote agent?&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;Alex&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 00:42:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/multiple-remote-agent/m-p/1642950#M287994</guid>
      <dc:creator>alex goshtaei</dc:creator>
      <dc:date>2019-03-11T00:42:02Z</dc:date>
    </item>
    <item>
      <title>Re: multiple remote agent</title>
      <link>https://community.cisco.com/t5/network-access-control/multiple-remote-agent/m-p/1642951#M288017</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am not sure if i understood your question properly. Anyway, i am defining my understanding below:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;AAA clients are defined in the NDG on the ACS appliance.&lt;/P&gt;&lt;P&gt;ACS Appliance authenticates via AD.&lt;/P&gt;&lt;P&gt;ACS appliance needs RA to talk to AD.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now in from your question, here is my understanding:&lt;/P&gt;&lt;P&gt;AAA Clients are defined in NDG. they are to authenticate via the AD. so to talk to AD we need to define RA per NDG.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is that correct as your question?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If yes, then the flow is somewhat like this:&lt;/P&gt;&lt;P&gt;AAA Client sends authentication request.&lt;/P&gt;&lt;P&gt;The request reaches the ACS Appliance. For the appliance it is just a request no matter from where it comes. It sees that this has to be authenticated via the AD. inorder to do that it has to forward to the Remote Agent. so it will forward to Remote Agent which in turn will forward to the AD.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So, RA defination per NDG does not come into picture.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;For reference purpose the link describing the NDG is as follows:&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2/user/guide/NetCfg.html#wp342699"&gt;http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2/user/guide/NetCfg.html#wp342699&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The link for Remote Agent is as follows:&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_solution_engine/3.3/installation/guide/remote_agent/rawo.html"&gt;http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_solution_engine/3.3/installation/guide/remote_agent/rawo.html&lt;/A&gt;.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I hope i have answered the question.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anisha&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;P.S.: Please mark this link resolved if you feel the query is answered.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 08 Jan 2011 04:43:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/multiple-remote-agent/m-p/1642951#M288017</guid>
      <dc:creator>andamani</dc:creator>
      <dc:date>2011-01-08T04:43:18Z</dc:date>
    </item>
    <item>
      <title>Re: multiple remote agent</title>
      <link>https://community.cisco.com/t5/network-access-control/multiple-remote-agent/m-p/1642952#M288050</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; color: #800000;"&gt;Hello,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; color: #800000;"&gt;You do not need to create the same Remote agent entry in every NDG. Just create one entry for the ACS server in the Not assigned group and it would work as an agent for all NDGs.&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; color: #800000;"&gt;What important here is to select the right remote agent under the external user database &amp;gt;&amp;gt; database configuration &amp;gt;&amp;gt; windows database &amp;gt;&amp;gt; remote agent selection.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; color: #800000;"&gt;Hope this helps.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; color: #800000;"&gt;Regards,&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; color: #800000;"&gt;Jatin&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-family: arial,helvetica,sans-serif; color: #800000;"&gt;~Do rate helpful posts.&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 09 Jan 2011 22:49:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/multiple-remote-agent/m-p/1642952#M288050</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2011-01-09T22:49:10Z</dc:date>
    </item>
  </channel>
</rss>

