<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to configure TACACS for Cat6509-SUP2? in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/how-to-configure-tacacs-for-cat6509-sup2/m-p/152246#M436380</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The minimum configuration required would be:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tacacs-server host 10.1.1.1 key cisco&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;aaa authentication login default [group] tacacs+ local&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authorization exec default [group] tacacs+ local &amp;lt;--this is not needed if you just want to authenticate users and don't want to directly be dropped to the enable mode&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you don't want to add the above line and wants to do enable password authentication then you can do the following:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authen enable default [group] tacacs+ enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa accounting exec default start-stop group tacacs+  &amp;lt;--You can turn on accounting for other purpose also like command autho etc.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Before you enter these, plese make sure to create the local user database as follows:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;username admin privilege 15 password admin&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mynul&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 11 Jun 2003 20:37:24 GMT</pubDate>
    <dc:creator>mhoda</dc:creator>
    <dc:date>2003-06-11T20:37:24Z</dc:date>
    <item>
      <title>How to configure TACACS for Cat6509-SUP2?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-configure-tacacs-for-cat6509-sup2/m-p/152245#M436379</link>
      <description>&lt;P&gt;I have a6509 with dual MSFC2 and dual SUP2. I am trying to implement TACACS on both. I would like to have fail over the local password if the TACACS server access fail. I need authentication and accounting.&lt;/P&gt;&lt;P&gt;What commands I should use? I tested some bute I am getting many erros. Is there any configuration sample available?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 14:21:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-configure-tacacs-for-cat6509-sup2/m-p/152245#M436379</guid>
      <dc:creator>gilson_machado</dc:creator>
      <dc:date>2019-03-10T14:21:26Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure TACACS for Cat6509-SUP2?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-configure-tacacs-for-cat6509-sup2/m-p/152246#M436380</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The minimum configuration required would be:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tacacs-server host 10.1.1.1 key cisco&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;aaa authentication login default [group] tacacs+ local&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authorization exec default [group] tacacs+ local &amp;lt;--this is not needed if you just want to authenticate users and don't want to directly be dropped to the enable mode&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you don't want to add the above line and wants to do enable password authentication then you can do the following:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authen enable default [group] tacacs+ enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa accounting exec default start-stop group tacacs+  &amp;lt;--You can turn on accounting for other purpose also like command autho etc.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Before you enter these, plese make sure to create the local user database as follows:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;username admin privilege 15 password admin&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Mynul&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 11 Jun 2003 20:37:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-configure-tacacs-for-cat6509-sup2/m-p/152246#M436380</guid>
      <dc:creator>mhoda</dc:creator>
      <dc:date>2003-06-11T20:37:24Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure TACACS for Cat6509-SUP2?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-configure-tacacs-for-cat6509-sup2/m-p/152247#M436381</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Mynul!&lt;/P&gt;&lt;P&gt;I forgot to mention that it is a CatOS (using set commands).&lt;/P&gt;&lt;P&gt;The group of commands that I could find is the below: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;! &lt;/P&gt;&lt;P&gt;set  authentication &amp;nbsp;login tacacs &amp;nbsp;enable  &lt;/P&gt;&lt;P&gt;set authentication enbale tacacs  enable &lt;/P&gt;&lt;P&gt;set tacacs server  x.x.x.x &amp;nbsp; &lt;/P&gt;&lt;P&gt;set tacacs  key &amp;nbsp;yyyy &lt;/P&gt;&lt;P&gt;! &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;But it is not working properly.&lt;/P&gt;&lt;P&gt;Is there anything to add to that?&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Gilson&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 Jun 2003 11:37:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-configure-tacacs-for-cat6509-sup2/m-p/152247#M436381</guid>
      <dc:creator>gilson_machado</dc:creator>
      <dc:date>2003-06-12T11:37:31Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure TACACS for Cat6509-SUP2?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-configure-tacacs-for-cat6509-sup2/m-p/152248#M436382</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Gilson,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;In case of switches with cat os there is no concept of local username, but it falls back to the local telnet and enable password.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you are using 7.5.x code then you add a local user otherwise.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here are the commands you need&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;set authentication login local enable &lt;/P&gt;&lt;P&gt;set authentication login tacacs enable&lt;/P&gt;&lt;P&gt;set tacacs server #.#.#.# &lt;/P&gt;&lt;P&gt;set tacacs key your_key &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is a good link&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/warp/public/480/72.shtml" target="_blank"&gt;http://www.cisco.com/warp/public/480/72.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Sujit&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 Jun 2003 16:00:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-configure-tacacs-for-cat6509-sup2/m-p/152248#M436382</guid>
      <dc:creator>sghosh</dc:creator>
      <dc:date>2003-06-12T16:00:17Z</dc:date>
    </item>
    <item>
      <title>Re: How to configure TACACS for Cat6509-SUP2?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-configure-tacacs-for-cat6509-sup2/m-p/152249#M436383</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Sujit!&lt;/P&gt;&lt;P&gt;looks like this is the correct set of commands.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks everybody for the help.&lt;/P&gt;&lt;P&gt;Reagrds,&lt;/P&gt;&lt;P&gt;Gilson&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 12 Jun 2003 18:18:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-configure-tacacs-for-cat6509-sup2/m-p/152249#M436383</guid>
      <dc:creator>gilson_machado</dc:creator>
      <dc:date>2003-06-12T18:18:27Z</dc:date>
    </item>
  </channel>
</rss>

