<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco ACS 4.1 replication and RSA SecurID integration in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cisco-acs-4-1-replication-and-rsa-securid-integration/m-p/863051#M408551</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You need to set external data setting on the second acs manually as replication does not cover it. Other way around is to take backup from primary and restore it to secondary.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Once done only things you need to be careful about IP address change in secondary.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes can set up load balancing , lets says you have two sites 1 and 2 . Each site have individual acs&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Site 1     Site 2&lt;/P&gt;&lt;P&gt;ACS1        ACS 2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now for  site 1 aaa clients you need to define acs1 as primary and acs 2 as secondary ...where in on Site 2 aaa clients you need to define acs2 as primary and acs1 as secondary.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;~Regards,&lt;/P&gt;&lt;P&gt;~JG&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate helpful posts &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 19 Oct 2007 15:54:52 GMT</pubDate>
    <dc:creator>Jagdeep Gambhir</dc:creator>
    <dc:date>2007-10-19T15:54:52Z</dc:date>
    <item>
      <title>Cisco ACS 4.1 replication and RSA SecurID integration</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-4-1-replication-and-rsa-securid-integration/m-p/863050#M408550</link>
      <description>&lt;P&gt;I have Cisco ACS 4.1 build 23 patch 5 installed on&lt;/P&gt;&lt;P&gt;Windows 2003 Enterprise Edtition Server with&lt;/P&gt;&lt;P&gt;Service Pack 2.  This Win2k3, called Win2k3-AD1,&lt;/P&gt;&lt;P&gt;is also an AD controller.  On this AD controller &lt;/P&gt;&lt;P&gt;I also installed RSA SecurID Server and I integrate &lt;/P&gt;&lt;P&gt;SecurID with Cisco ACS. I also integrated Cisco &lt;/P&gt;&lt;P&gt;ACS with Microsoft LDAP on the same box.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now I would like to install Cisco ACS 4.1 build 23&lt;/P&gt;&lt;P&gt;patch 5 on another W2k3 enterprise edition server,&lt;/P&gt;&lt;P&gt;called win2k3-AD2, AD controller and then I want &lt;/P&gt;&lt;P&gt;to replicate ACS between win2k3-AD1 and win2k3-AD2.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Will that work and what about the SecurID part?&lt;/P&gt;&lt;P&gt;Can I use both boxes for load-sharing?  Like&lt;/P&gt;&lt;P&gt;half of my devices will go to win2k3-AD1 for &lt;/P&gt;&lt;P&gt;authentication and half of devices will go to&lt;/P&gt;&lt;P&gt;win2k3-AD2 for authentication.  How will these&lt;/P&gt;&lt;P&gt;ACS servers handle SecurID integration?  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Having a single ACS is easy with SecurID &lt;/P&gt;&lt;P&gt;integration, but adding another ACS makes thing&lt;/P&gt;&lt;P&gt;more complicated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Comments?&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 22:27:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-4-1-replication-and-rsa-securid-integration/m-p/863050#M408550</guid>
      <dc:creator>kevin.jones1</dc:creator>
      <dc:date>2019-03-10T22:27:30Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ACS 4.1 replication and RSA SecurID integration</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-4-1-replication-and-rsa-securid-integration/m-p/863051#M408551</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You need to set external data setting on the second acs manually as replication does not cover it. Other way around is to take backup from primary and restore it to secondary.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Once done only things you need to be careful about IP address change in secondary.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes can set up load balancing , lets says you have two sites 1 and 2 . Each site have individual acs&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Site 1     Site 2&lt;/P&gt;&lt;P&gt;ACS1        ACS 2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Now for  site 1 aaa clients you need to define acs1 as primary and acs 2 as secondary ...where in on Site 2 aaa clients you need to define acs2 as primary and acs1 as secondary.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;~Regards,&lt;/P&gt;&lt;P&gt;~JG&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate helpful posts &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Oct 2007 15:54:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-4-1-replication-and-rsa-securid-integration/m-p/863051#M408551</guid>
      <dc:creator>Jagdeep Gambhir</dc:creator>
      <dc:date>2007-10-19T15:54:52Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco ACS 4.1 replication and RSA SecurID integration</title>
      <link>https://community.cisco.com/t5/network-access-control/cisco-acs-4-1-replication-and-rsa-securid-integration/m-p/863052#M408552</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I know that type of load-balancing.  What&lt;/P&gt;&lt;P&gt;I am referring to is to put 2 ACS behind a&lt;/P&gt;&lt;P&gt;load balancer like a F5 BigIP so it will&lt;/P&gt;&lt;P&gt;balance that way.  I wonder if it will work&lt;/P&gt;&lt;P&gt;that that way.  I want all devices in my network&lt;/P&gt;&lt;P&gt;to have unify configuration.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;you said: "You need to set external data setting on the second acs manually as replication does not cover it. Other way around is to take backup from primary and restore it to secondary."&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Are you telling me that the secondary ACS&lt;/P&gt;&lt;P&gt;will work with RSA too?  If so, how? &lt;/P&gt;&lt;P&gt;Did you get it working in either a lab&lt;/P&gt;&lt;P&gt;or production environment?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Oct 2007 16:36:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cisco-acs-4-1-replication-and-rsa-securid-integration/m-p/863052#M408552</guid>
      <dc:creator>kevin.jones1</dc:creator>
      <dc:date>2007-10-19T16:36:55Z</dc:date>
    </item>
  </channel>
</rss>

