<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: same host for radius and tacacs in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/same-host-for-radius-and-tacacs/m-p/881226#M391642</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;CiscoPix# sh run |  inc aaa&lt;/P&gt;&lt;P&gt;aaa-server ABC protocol tacacs+&lt;/P&gt;&lt;P&gt;aaa-server ABC (outside) host 192.168.1.1&lt;/P&gt;&lt;P&gt;aaa-server TEST protocol tacacs+&lt;/P&gt;&lt;P&gt;aaa-server TEST (outside) host 192.168.1.1&lt;/P&gt;&lt;P&gt;aaa-server funk protocol radius&lt;/P&gt;&lt;P&gt;aaa-server funk (outside) host 192.168.1.1&lt;/P&gt;&lt;P&gt;aaa authentication enable console ABC LOCAL&lt;/P&gt;&lt;P&gt;aaa authentication ssh console ABC LOCAL&lt;/P&gt;&lt;P&gt;aaa authentication http console LOCAL&lt;/P&gt;&lt;P&gt;aaa accounting command ABC&lt;/P&gt;&lt;P&gt;aaa accounting ssh console ABC&lt;/P&gt;&lt;P&gt;aaa accounting telnet console ABC&lt;/P&gt;&lt;P&gt;aaa accounting serial console ABC&lt;/P&gt;&lt;P&gt;aaa accounting enable console ABC&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It's all in the tag (i.e. ABC, TEST, funk)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;CCIE Security&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 04 Feb 2008 19:18:32 GMT</pubDate>
    <dc:creator>cisco24x7</dc:creator>
    <dc:date>2008-02-04T19:18:32Z</dc:date>
    <item>
      <title>same host for radius and tacacs</title>
      <link>https://community.cisco.com/t5/network-access-control/same-host-for-radius-and-tacacs/m-p/881225#M391641</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;can i put a host (asa for example) twice in the acs server? one for tacacs to grant exec access to administrators and one for radius to authenticate the remote users.&lt;/P&gt;&lt;P&gt;I dont want remote users to be able to get exec mode.&lt;/P&gt;&lt;P&gt;Or how should i configure this ?&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 22:38:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/same-host-for-radius-and-tacacs/m-p/881225#M391641</guid>
      <dc:creator>be04376</dc:creator>
      <dc:date>2019-03-10T22:38:24Z</dc:date>
    </item>
    <item>
      <title>Re: same host for radius and tacacs</title>
      <link>https://community.cisco.com/t5/network-access-control/same-host-for-radius-and-tacacs/m-p/881226#M391642</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;CiscoPix# sh run |  inc aaa&lt;/P&gt;&lt;P&gt;aaa-server ABC protocol tacacs+&lt;/P&gt;&lt;P&gt;aaa-server ABC (outside) host 192.168.1.1&lt;/P&gt;&lt;P&gt;aaa-server TEST protocol tacacs+&lt;/P&gt;&lt;P&gt;aaa-server TEST (outside) host 192.168.1.1&lt;/P&gt;&lt;P&gt;aaa-server funk protocol radius&lt;/P&gt;&lt;P&gt;aaa-server funk (outside) host 192.168.1.1&lt;/P&gt;&lt;P&gt;aaa authentication enable console ABC LOCAL&lt;/P&gt;&lt;P&gt;aaa authentication ssh console ABC LOCAL&lt;/P&gt;&lt;P&gt;aaa authentication http console LOCAL&lt;/P&gt;&lt;P&gt;aaa accounting command ABC&lt;/P&gt;&lt;P&gt;aaa accounting ssh console ABC&lt;/P&gt;&lt;P&gt;aaa accounting telnet console ABC&lt;/P&gt;&lt;P&gt;aaa accounting serial console ABC&lt;/P&gt;&lt;P&gt;aaa accounting enable console ABC&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It's all in the tag (i.e. ABC, TEST, funk)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;CCIE Security&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 04 Feb 2008 19:18:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/same-host-for-radius-and-tacacs/m-p/881226#M391642</guid>
      <dc:creator>cisco24x7</dc:creator>
      <dc:date>2008-02-04T19:18:32Z</dc:date>
    </item>
    <item>
      <title>Re: same host for radius and tacacs</title>
      <link>https://community.cisco.com/t5/network-access-control/same-host-for-radius-and-tacacs/m-p/881227#M391643</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes, you can do it. ON acs network configuration &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;add&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ASA---&amp;gt; 10.1.1.1----&amp;gt; Auth using tacacs+&lt;/P&gt;&lt;P&gt;ASA1--&amp;gt;10.1.1.1----&amp;gt;Auth using Radius &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Host name can't be same.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;~JG&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do rate helpful posts&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 05 Feb 2008 03:26:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/same-host-for-radius-and-tacacs/m-p/881227#M391643</guid>
      <dc:creator>Jagdeep Gambhir</dc:creator>
      <dc:date>2008-02-05T03:26:32Z</dc:date>
    </item>
  </channel>
</rss>

