<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic TACACS+ Issue with WLC 5508 &amp; ACS 5.1 in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948466#M387232</link>
    <description>&lt;P&gt;Hi &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am trying to implement TACACS authentication against our internal database on the ACS 5.1 for access to our wlc 5508. I have configured the WLC 5508 to use the TACACS which is configured to point our ACS. In the ACS I have configured the relevant shell profile such as Role1, Mandatory &amp;amp; ALL.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When looking into the ACS log it actually shows you that the TACACS access was passed. But when I have tried to login it comes back to the same login box.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have attached a screen shot of the ACS log.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any ideas?&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 01:57:44 GMT</pubDate>
    <dc:creator>goudier2001</dc:creator>
    <dc:date>2019-03-11T01:57:44Z</dc:date>
    <item>
      <title>TACACS+ Issue with WLC 5508 &amp; ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948466#M387232</link>
      <description>&lt;P&gt;Hi &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am trying to implement TACACS authentication against our internal database on the ACS 5.1 for access to our wlc 5508. I have configured the WLC 5508 to use the TACACS which is configured to point our ACS. In the ACS I have configured the relevant shell profile such as Role1, Mandatory &amp;amp; ALL.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When looking into the ACS log it actually shows you that the TACACS access was passed. But when I have tried to login it comes back to the same login box.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have attached a screen shot of the ACS log.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any ideas?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 01:57:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948466#M387232</guid>
      <dc:creator>goudier2001</dc:creator>
      <dc:date>2019-03-11T01:57:44Z</dc:date>
    </item>
    <item>
      <title>TACACS+ Issue with WLC 5508 &amp; ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948467#M387276</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Forgot to mention the ACS version 5.1.0.11 &amp;amp; the WLC 5508 is 7-0-220-0&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Apr 2012 13:57:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948467#M387276</guid>
      <dc:creator>goudier2001</dc:creator>
      <dc:date>2012-04-02T13:57:52Z</dc:date>
    </item>
    <item>
      <title>TACACS+ Issue with WLC 5508 &amp; ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948468#M387314</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Have you installed any patches for ACS 5.1 or are you on the base release&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There were in total 6 cumulative patches for ACS 5.1 and at least some of these were applicable to TACACS+ and WLC&lt;/P&gt;&lt;P&gt;I don't remember them all off the top of my head and the release is a bit old but may include the following:&lt;/P&gt;&lt;P&gt;CSCtd24949 - Tacacs authorization failure when authen_type=0&lt;/P&gt;&lt;P&gt;CSCte81150 - ACS 5.x reports key mismatch for unknown authen type&lt;/P&gt;&lt;P&gt;CSCte70900 - ACS 5.1 rejects AP to join WDS domain by "LEAP packet validation failed"&lt;/P&gt;&lt;P&gt;CSCte16911 - ACS 5 doesn't support the PPP tacacs service type for authentication&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Not sure I have pointed to a specific oen but I do strongly recommend installing patch 6 for ACS 5.1. Can be downloaded from CCO&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Apr 2012 14:42:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948468#M387314</guid>
      <dc:creator>jrabinow</dc:creator>
      <dc:date>2012-04-02T14:42:38Z</dc:date>
    </item>
    <item>
      <title>TACACS+ Issue with WLC 5508 &amp; ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948469#M387355</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Sorry My mistake. The version on the ACS is 5-1-0-44-6&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Apr 2012 16:32:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948469#M387355</guid>
      <dc:creator>goudier2001</dc:creator>
      <dc:date>2012-04-02T16:32:42Z</dc:date>
    </item>
    <item>
      <title>TACACS+ Issue with WLC 5508 &amp; ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948470#M387426</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please post a screenshot of your shell profile. Authentication can pass but if the right attributes are not sent precisely, then nothing will happen on WLC.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Apr 2012 18:40:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948470#M387426</guid>
      <dc:creator>Nicolas Darchis</dc:creator>
      <dc:date>2012-04-02T18:40:34Z</dc:date>
    </item>
    <item>
      <title>TACACS+ Issue with WLC 5508 &amp; ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948471#M387510</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/5/6/9/83965-shell%20profile3.jpg" class="jive-image" /&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 02 Apr 2012 22:01:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948471#M387510</guid>
      <dc:creator>goudier2001</dc:creator>
      <dc:date>2012-04-02T22:01:10Z</dc:date>
    </item>
    <item>
      <title>Re: TACACS+ Issue with WLC 5508 &amp; ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948472#M387566</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;It turns out that the attribute entry that I entered had space characters in it which are there by default. This seems to be an undocumented bug. When you enter role1, mandatory then ALL. The ALL field has spaces in it which must be deleted first before entering your command.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Apr 2012 22:12:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948472#M387566</guid>
      <dc:creator>goudier2001</dc:creator>
      <dc:date>2012-04-05T22:12:25Z</dc:date>
    </item>
    <item>
      <title>TACACS+ Issue with WLC 5508 &amp; ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948473#M387625</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; thanks for posting.&amp;nbsp; i had this issue as well.&amp;nbsp; there were 22 spaces in the "empty" valuse field that were appended to my entered value.&amp;nbsp; once removed, i was able to login.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 15 May 2013 17:45:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948473#M387625</guid>
      <dc:creator>bmarms</dc:creator>
      <dc:date>2013-05-15T17:45:22Z</dc:date>
    </item>
    <item>
      <title>TACACS+ Issue with WLC 5508 &amp; ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948474#M387666</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am facing the same issue. I removed blank spaces in the attribute filed but still facing the issues. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any idea, what could be causing the issue??&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;Imran&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 03 Mar 2014 19:40:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-issue-with-wlc-5508-acs-5-1/m-p/1948474#M387666</guid>
      <dc:creator>Imran Mirzanaik</dc:creator>
      <dc:date>2014-03-03T19:40:30Z</dc:date>
    </item>
  </channel>
</rss>

