<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: TACACS groups in different VRF in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/tacacs-groups-in-different-vrf/m-p/4188346#M563967</link>
    <description>&lt;P&gt;Not sure what is the device IOS running here&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;here is example : is this helps you ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_tacacs/configuration/xe-3s/sec-usr-tacacs-xe-3s-book/sec-vrf-tacas-svrs.html#:~:text=The%20Per%20VRF%20for%20TACACS%2B,(AAA)%20on%20TACACS%2B%20servers" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_tacacs/configuration/xe-3s/sec-usr-tacacs-xe-3s-book/sec-vrf-tacas-svrs.html#:~:text=The%20Per%20VRF%20for%20TACACS%2B,(AAA)%20on%20TACACS%2B%20servers&lt;/A&gt;.&lt;/P&gt;</description>
    <pubDate>Tue, 24 Nov 2020 20:25:16 GMT</pubDate>
    <dc:creator>balaji.bandi</dc:creator>
    <dc:date>2020-11-24T20:25:16Z</dc:date>
    <item>
      <title>TACACS groups in different VRF</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-groups-in-different-vrf/m-p/4188323#M563966</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;does cisco support multiple tacacs groups on the switch and every tacacs group is in different vrf (different IP addresses).&lt;/P&gt;&lt;P&gt;thank you&lt;/P&gt;</description>
      <pubDate>Tue, 24 Nov 2020 19:40:14 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-groups-in-different-vrf/m-p/4188323#M563966</guid>
      <dc:creator>peter.matuska1</dc:creator>
      <dc:date>2020-11-24T19:40:14Z</dc:date>
    </item>
    <item>
      <title>Re: TACACS groups in different VRF</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-groups-in-different-vrf/m-p/4188346#M563967</link>
      <description>&lt;P&gt;Not sure what is the device IOS running here&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;here is example : is this helps you ?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_tacacs/configuration/xe-3s/sec-usr-tacacs-xe-3s-book/sec-vrf-tacas-svrs.html#:~:text=The%20Per%20VRF%20for%20TACACS%2B,(AAA)%20on%20TACACS%2B%20servers" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_tacacs/configuration/xe-3s/sec-usr-tacacs-xe-3s-book/sec-vrf-tacas-svrs.html#:~:text=The%20Per%20VRF%20for%20TACACS%2B,(AAA)%20on%20TACACS%2B%20servers&lt;/A&gt;.&lt;/P&gt;</description>
      <pubDate>Tue, 24 Nov 2020 20:25:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-groups-in-different-vrf/m-p/4188346#M563967</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2020-11-24T20:25:16Z</dc:date>
    </item>
    <item>
      <title>Re: TACACS groups in different VRF</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-groups-in-different-vrf/m-p/4188348#M563968</link>
      <description>&lt;P&gt;Hi, the doc mentions only 1 vrf. My goal is to have VRF ONE and configured TAC1 tacacs group inside this VRF. Then I wan to have VRF TWO and TAC2 tacacs group inside this VRF. So if all ports in vrf ONE are down, I will be able to login to the device using TAC2 in vrf TWO. I haven't tried to configure it yet, it it just theoretical question.&lt;/P&gt;</description>
      <pubDate>Tue, 24 Nov 2020 20:30:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-groups-in-different-vrf/m-p/4188348#M563968</guid>
      <dc:creator>peter.matuska1</dc:creator>
      <dc:date>2020-11-24T20:30:01Z</dc:date>
    </item>
    <item>
      <title>Re: TACACS groups in different VRF</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-groups-in-different-vrf/m-p/4188357#M563969</link>
      <description>&lt;P&gt;I have not deployed also tested, as perr the document itself says per VRF. the example give single&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;you can have more tacacs defined with respect VRF should work.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Nice questions -&amp;nbsp; Nice its time for Lab list&amp;nbsp; for me added&lt;/P&gt;</description>
      <pubDate>Tue, 24 Nov 2020 20:42:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-groups-in-different-vrf/m-p/4188357#M563969</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2020-11-24T20:42:46Z</dc:date>
    </item>
    <item>
      <title>Re: TACACS groups in different VRF</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-groups-in-different-vrf/m-p/4188887#M563993</link>
      <description>&lt;P&gt;Yes configuring different aaa groups in different VRFs is supported. However, I did not see this as a very common configuration. Typically you would want to configure the redundancy on the aaa server side, for example, you would have two different RADIUS or TACACS servers, and on the NAD you configure both of them under the same aaa group. But if you want to configure different aaa groups in different VRFs then what you need to do is just to issue the command &lt;STRONG&gt;ip vrf forwarding &amp;lt;the VRF name&amp;gt;&lt;/STRONG&gt; under each respective group.&lt;/P&gt;</description>
      <pubDate>Wed, 25 Nov 2020 19:02:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-groups-in-different-vrf/m-p/4188887#M563993</guid>
      <dc:creator>Aref Alsouqi</dc:creator>
      <dc:date>2020-11-25T19:02:29Z</dc:date>
    </item>
  </channel>
</rss>

