<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ACS config Problem in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-config-problem/m-p/1003012#M407224</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;but I am not able to see complete logging of all commands that I am using during the session. I configure the following things on router &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa new-model &lt;/P&gt;&lt;P&gt;aaa authentication login default group radius local &lt;/P&gt;&lt;P&gt;aaa authorization exec authorization group radius &lt;/P&gt;&lt;P&gt;aaa accounting commands 15 accounting start-stop group radius &lt;/P&gt;&lt;P&gt;aaa accounting exec default start-stop group radius &lt;/P&gt;&lt;P&gt;aaa accounting network default start-stop group radius &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;radius-server host 172.28.31.132 &lt;/P&gt;&lt;P&gt;radius-server key waridtel0321 &lt;/P&gt;&lt;P&gt;ip radius source-interface gig 0/1 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please tell me how i can see which activities user has performed during the session. detail of command. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can i use tacacs for authentication and radius for accounting. I tried it but it didnt work for me. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please guide I will be very greatful to you. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;in Tacacs accounting CSV file, it shows me only login time, user id and service shell, i want to see detail of command that user has used during the session.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have attached both CSV files that i got when trying with tacacs and radius for accounting.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 21 Apr 2008 23:30:58 GMT</pubDate>
    <dc:creator>wasiimcisco</dc:creator>
    <dc:date>2008-04-21T23:30:58Z</dc:date>
    <item>
      <title>ACS config Problem</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-config-problem/m-p/1003010#M407215</link>
      <description>&lt;P&gt;I have ACS solution engine, I made a NDG on ACS and add AAA server and AAA client. I also made a user in default group 1. The same user exist&lt;/P&gt;&lt;P&gt;in rotuer local database just on the safe side. But I am not able to see any activitiy in ACS reporting window,&lt;/P&gt;&lt;P&gt;not able to see any logged user in ACS.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The following is the configuration that I did on ACS engine and router&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authentication login default group tacacs+ local&lt;/P&gt;&lt;P&gt;aaa authorization exec authorization group tacacs+ local &lt;/P&gt;&lt;P&gt;aaa accounting commands 15 accounting start-stop group tacacs+&lt;/P&gt;&lt;P&gt;username cisco password cisco123 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tacacs-server host 172.28.31.132&lt;/P&gt;&lt;P&gt;tacacs-server key &amp;lt;tacacs-shared-key&amp;gt;&lt;/P&gt;&lt;P&gt;ip tacacs source-interface gig 0/1&lt;/P&gt;&lt;P&gt;username cisco password cisco123 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 22:48:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-config-problem/m-p/1003010#M407215</guid>
      <dc:creator>wasiimcisco</dc:creator>
      <dc:date>2019-03-10T22:48:16Z</dc:date>
    </item>
    <item>
      <title>Re: ACS config Problem</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-config-problem/m-p/1003011#M407222</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You mean you can authenticate fine but do not see any command accounting ? If that is the case,then pls note that Command accounting logs are stroed in tacacs administration logs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also there is a known issue on ver 4.1.1 and we need to apply patch ACS 4.1.1.23.5 to fix the command accounting issue.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Patch for appliance is available on&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/cgi-bin/tablebuild.pl/acs-soleng-3des" target="_blank"&gt;http://www.cisco.com/cgi-bin/tablebuild.pl/acs-soleng-3des&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Patch name : ACS SE 4.1.1.23.5 accumulative patch&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Patch for acs windows is available on&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/cgi-bin/tablebuild.pl/acs-win-3des" target="_blank"&gt;http://www.cisco.com/cgi-bin/tablebuild.pl/acs-win-3des&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Patch Name : ACS 4.1.1.23.5 accumulative patch&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;That should fix the issue,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;~JG&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 21 Apr 2008 20:32:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-config-problem/m-p/1003011#M407222</guid>
      <dc:creator>Jagdeep Gambhir</dc:creator>
      <dc:date>2008-04-21T20:32:11Z</dc:date>
    </item>
    <item>
      <title>Re: ACS config Problem</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-config-problem/m-p/1003012#M407224</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;but I am not able to see complete logging of all commands that I am using during the session. I configure the following things on router &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa new-model &lt;/P&gt;&lt;P&gt;aaa authentication login default group radius local &lt;/P&gt;&lt;P&gt;aaa authorization exec authorization group radius &lt;/P&gt;&lt;P&gt;aaa accounting commands 15 accounting start-stop group radius &lt;/P&gt;&lt;P&gt;aaa accounting exec default start-stop group radius &lt;/P&gt;&lt;P&gt;aaa accounting network default start-stop group radius &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;radius-server host 172.28.31.132 &lt;/P&gt;&lt;P&gt;radius-server key waridtel0321 &lt;/P&gt;&lt;P&gt;ip radius source-interface gig 0/1 &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please tell me how i can see which activities user has performed during the session. detail of command. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can i use tacacs for authentication and radius for accounting. I tried it but it didnt work for me. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please guide I will be very greatful to you. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;in Tacacs accounting CSV file, it shows me only login time, user id and service shell, i want to see detail of command that user has used during the session.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have attached both CSV files that i got when trying with tacacs and radius for accounting.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 21 Apr 2008 23:30:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-config-problem/m-p/1003012#M407224</guid>
      <dc:creator>wasiimcisco</dc:creator>
      <dc:date>2008-04-21T23:30:58Z</dc:date>
    </item>
    <item>
      <title>Re: ACS config Problem</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-config-problem/m-p/1003013#M407225</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Command accounting is only possible via Tacacs and not radius.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So you need to use tacacs and these logs would be logged in tacacs administration logs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;~JG&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do rate helpful posts&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 22 Apr 2008 13:52:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-config-problem/m-p/1003013#M407225</guid>
      <dc:creator>Jagdeep Gambhir</dc:creator>
      <dc:date>2008-04-22T13:52:04Z</dc:date>
    </item>
  </channel>
</rss>

