<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic the new Tacacs+ for Switches in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823658#M305218</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I know that you need to define the tacacs server a different way.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tacacs server host &lt;NAME&gt; (hit enter here)&lt;/NAME&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then you define the server ipv4/ipv6 address and credentials.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Nico&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 18 Nov 2011 10:23:45 GMT</pubDate>
    <dc:creator>Nicolas Darchis</dc:creator>
    <dc:date>2011-11-18T10:23:45Z</dc:date>
    <item>
      <title>the new Tacacs+ for Switches</title>
      <link>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823657#M305217</link>
      <description>&lt;P&gt;I just upgraded my IOS to the latest but now the way i was inputing my Tacacs+ info is not working.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;conf t&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;enable secret*****&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;username admin privilege 15 password 0 ******* &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authentication login default group tacacs+ enable local&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authentication enable default group tacacs+ enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tacacs-server host*.*.*.* key *******&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;line con 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;login authentication default&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;line vty 0 4 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;login authentication default&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;line vty 5 15&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;login authentication default&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;end&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But now it looks as if I need to set this up a bit diffrently, has anyone setup the new way?&amp;nbsp; any pointers?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 01:33:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823657#M305217</guid>
      <dc:creator>Bobby Roberts</dc:creator>
      <dc:date>2019-03-11T01:33:45Z</dc:date>
    </item>
    <item>
      <title>the new Tacacs+ for Switches</title>
      <link>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823658#M305218</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I know that you need to define the tacacs server a different way.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tacacs server host &lt;NAME&gt; (hit enter here)&lt;/NAME&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then you define the server ipv4/ipv6 address and credentials.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Nico&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 18 Nov 2011 10:23:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823658#M305218</guid>
      <dc:creator>Nicolas Darchis</dc:creator>
      <dc:date>2011-11-18T10:23:45Z</dc:date>
    </item>
    <item>
      <title>Re: the new Tacacs+ for Switches</title>
      <link>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823659#M305220</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I do have the same problem with the TACACS+ authentication after upgrading the IOS on my Catalyst C2960G.&lt;/P&gt;&lt;P&gt;It says that the command "tacacs-server host" is deprecated soon. I tried to reconfigure my startup-config according to this link: &lt;A href="http://slaptijack.com/networking/new-style-tacacs-configuration/"&gt;http://slaptijack.com/networking/new-style-tacacs-configuration/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Although my Switch is accepting the new command a warning message occurs after rebooting it:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;%AAAA-4-NOSERVER: Warning: Server acs1.teas.bessy.de is not defined.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is an excerpt of my config:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;---------------------------------------------------------------------------------&lt;/P&gt;&lt;P&gt;&lt;EM&gt;aaa new-model&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;!&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;!&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;aaa group server tacacs+ tac_admin&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt; server name acs1&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;!&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;aaa authentication login default group tac_admin local&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;aaa authorization exec default group tac_admin local&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;!&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;tacacs server acs1&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt; address ipv4 192.168.246.69&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;EM&gt;&amp;nbsp; key 7 #############&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;---------------------------------------------------------------------------------&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I don't know how to solve the problem.&lt;/P&gt;&lt;P&gt;Can anybody help? &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;André&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 18 Nov 2011 14:52:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823659#M305220</guid>
      <dc:creator>andrestruwe</dc:creator>
      <dc:date>2011-11-18T14:52:55Z</dc:date>
    </item>
    <item>
      <title>Re: the new Tacacs+ for Switches</title>
      <link>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823660#M305222</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Usualy I update once i've found the fix.&amp;nbsp;&amp;nbsp; or in other words I got it to work running this.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;CONF T&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa new model&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tacacs server tacacs&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;address ipv4 *.*.*.*&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;key &lt;KEY&gt;&lt;/KEY&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;exit&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authentication login default group tacacs+ enable local&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authentication login console group tacacs+ enable local&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authentication enable default group tacacs+ enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But this didn't work right away, I acutally had to NO out the previous &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tacacs-server IP ADDRESS PORT KEY &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;that was left from the old IOS.&amp;nbsp; Once I NO'd out that, it worked like a charm&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 18 Nov 2011 22:32:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823660#M305222</guid>
      <dc:creator>Bobby Roberts</dc:creator>
      <dc:date>2011-11-18T22:32:27Z</dc:date>
    </item>
    <item>
      <title>Re: the new Tacacs+ for Switches</title>
      <link>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823661#M305227</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;@Bobby Roberts,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thank you for your reply. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'd already exchanged the old&amp;nbsp; "&lt;STRONG&gt;tacacs-server IP ADDRESS PORT KEY" &lt;/STRONG&gt;command with the new one like on the example given on this page: &lt;A href="http://slaptijack.com/networking/new-style-tacacs-configuration/"&gt;http://slaptijack.com/networking/new-style-tacacs-configuration/&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So there isn't an old command left. Maybe there is something wrong in my config but I couldn't find any configuration example from Cisco.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can't anybody help?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 21 Nov 2011 08:21:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823661#M305227</guid>
      <dc:creator>andrestruwe</dc:creator>
      <dc:date>2011-11-21T08:21:44Z</dc:date>
    </item>
    <item>
      <title>Re: the new Tacacs+ for Switches</title>
      <link>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823662#M305233</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Although the warning message:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;%AAAA-4-NOSERVER: Warning: Server acs1.teas.bessy.de is not defined.&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;still appears while rebooting the tacacs+ authentication works. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 24 Nov 2011 16:06:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823662#M305233</guid>
      <dc:creator>andrestruwe</dc:creator>
      <dc:date>2011-11-24T16:06:32Z</dc:date>
    </item>
    <item>
      <title>Re: the new Tacacs+ for Switches</title>
      <link>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823663#M305265</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN&gt;Andre - Can you e-mail me your whole config, Ill paste it on a switch here and see where the problem is.&amp;nbsp; &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:Bobby@Bobby4Hire.com"&gt;Bobby@Bobby4Hire.com&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 25 Nov 2011 14:21:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823663#M305265</guid>
      <dc:creator>Bobby Roberts</dc:creator>
      <dc:date>2011-11-25T14:21:42Z</dc:date>
    </item>
    <item>
      <title>Re: the new Tacacs+ for Switches</title>
      <link>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823664#M305289</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Bobby,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am sorry but I can't send you the whole config because it is a configuration of my company and the necessary part is this one:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;&lt;EM style="border-collapse: collapse; list-style-type: none;"&gt;aaa new-model&lt;/EM&gt;&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;&lt;EM style="border-collapse: collapse; list-style-type: none;"&gt;!&lt;/EM&gt;&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;&lt;EM style="border-collapse: collapse; list-style-type: none;"&gt;!&lt;/EM&gt;&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;&lt;EM style="border-collapse: collapse; list-style-type: none;"&gt;aaa group server tacacs+ tac_admin&lt;/EM&gt;&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;&lt;EM style="border-collapse: collapse; list-style-type: none;"&gt;server name acs1&lt;/EM&gt;&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;&lt;EM style="border-collapse: collapse; list-style-type: none;"&gt;!&lt;/EM&gt;&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;&lt;EM style="border-collapse: collapse; list-style-type: none;"&gt;aaa authentication login default group tac_admin local&lt;/EM&gt;&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;&lt;EM style="border-collapse: collapse; list-style-type: none;"&gt;aaa authorization exec default group tac_admin local&lt;/EM&gt;&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;&lt;EM style="border-collapse: collapse; list-style-type: none;"&gt;!&lt;/EM&gt;&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;&lt;EM style="border-collapse: collapse; list-style-type: none;"&gt;tacacs server acs1&lt;/EM&gt;&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;&lt;EM style="border-collapse: collapse; list-style-type: none;"&gt;address ipv4 192.168.246.69&lt;/EM&gt;&lt;/P&gt;&lt;P style="background-color: #ffffff; border-collapse: collapse; font-size: 12px; list-style-type: none; font-family: Arial, verdana, sans-serif;"&gt;&lt;EM style="border-collapse: collapse; list-style-type: none;"&gt;&amp;nbsp; key 7 #############&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Despite this thanks for your help &lt;SPAN __jive_emoticon_name="happy" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/happy.gif"&gt;&lt;/SPAN&gt;.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 28 Nov 2011 09:05:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/the-new-tacacs-for-switches/m-p/1823664#M305289</guid>
      <dc:creator>andrestruwe</dc:creator>
      <dc:date>2011-11-28T09:05:10Z</dc:date>
    </item>
  </channel>
</rss>

