<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4769929#M579682</link>
    <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1065752"&gt;@MHM Cisco World&lt;/a&gt;&amp;nbsp;- any luck with this? very interested to hear what you have found! &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
    <pubDate>Mon, 06 Feb 2023 22:46:16 GMT</pubDate>
    <dc:creator>benbroadfoot</dc:creator>
    <dc:date>2023-02-06T22:46:16Z</dc:date>
    <item>
      <title>Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767116#M579556</link>
      <description>&lt;P&gt;Hi There,&lt;/P&gt;&lt;P&gt;I have 2 C9500 L3 switches setup successfully authenticating to 2 ISE 2.6.0.156 servers using the following command set:&lt;/P&gt;&lt;P&gt;aaa group server tacacs+ ISE_SERVERS&lt;BR /&gt;server-private &lt;EM&gt;10.x.x.1 &lt;/EM&gt;key 7 &lt;EM&gt;blablabla&lt;/EM&gt;&lt;BR /&gt;server-private &lt;EM&gt;10.x.x.2&lt;/EM&gt; key 7 &lt;EM&gt;blablabla&lt;/EM&gt;&lt;BR /&gt;ip tacacs source-interface &lt;EM&gt;Vlanxxx&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;aaa authentication login default group ISE_SERVERS local&lt;BR /&gt;aaa authorization console&lt;BR /&gt;aaa authorization config-commands&lt;BR /&gt;aaa authorization exec default group ISE_SERVERS local if-authenticated&lt;BR /&gt;aaa accounting exec default start-stop group ISE_SERVERS&lt;BR /&gt;aaa accounting commands 0 default start-stop group ISE_SERVERS&lt;BR /&gt;aaa accounting commands 1 default start-stop group ISE_SERVERS&lt;BR /&gt;aaa accounting commands 15 default start-stop group ISE_SERVERS&lt;BR /&gt;aaa accounting network default start-stop group ISE_SERVERS&lt;BR /&gt;aaa accounting network SSH start-stop group ISE_SERVERS&lt;EM&gt;&lt;BR /&gt;&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;Now if I apply the same config as above to some other switches (connected to the C9500's. I cannot get ISE to authenticate to logon. I can ping the ISE servers from the offending switches &amp;amp; ISE can ping the switches OK.&lt;/P&gt;&lt;P&gt;If I change the config on the offending switches to the following, everything works fine! Just wondering what could be the difference with using 'server-private' in the ISE_SERVERS tacacs+ group as opposed to using just the tacacs server command?&lt;/P&gt;&lt;P&gt;aaa authentication login default group tacacs+ local&lt;BR /&gt;aaa authentication enable default group tacacs+ enable&lt;BR /&gt;aaa authorization exec default group tacacs+ local&lt;/P&gt;&lt;P&gt;tacacs server ISE_SERVER&lt;BR /&gt;address ipv4 &lt;EM&gt;10.x.x.1&lt;/EM&gt;&lt;BR /&gt;key 7 &lt;EM&gt;blablabla&lt;/EM&gt;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;</description>
      <pubDate>Thu, 02 Feb 2023 00:10:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767116#M579556</guid>
      <dc:creator>benbroadfoot</dc:creator>
      <dc:date>2023-02-02T00:10:59Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767119#M579557</link>
      <description>&lt;P&gt;&lt;SPAN&gt;some other switches&amp;nbsp; - need more information on what model of the switch and what IOS code running.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Cat 9500 latest IOS XE code - so the syntax changed looking into future config directions.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;some old models based on IOS we need to use what is suggested.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;i do see different config methods in different models of routers and switches.&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Feb 2023 00:20:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767119#M579557</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2023-02-02T00:20:51Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767125#M579559</link>
      <description>&lt;P&gt;&lt;SPAN&gt;ip tacacs source-interface&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;Vlanxxx &amp;lt;&amp;lt;- are this VLAN interface is UP ??&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Feb 2023 00:28:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767125#M579559</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-02-02T00:28:13Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767132#M579561</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1065752"&gt;@MHM Cisco World&lt;/a&gt;&amp;nbsp;- yes vlan is up&lt;/P&gt;</description>
      <pubDate>Thu, 02 Feb 2023 00:36:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767132#M579561</guid>
      <dc:creator>benbroadfoot</dc:creator>
      <dc:date>2023-02-02T00:36:21Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767133#M579562</link>
      <description>&lt;P&gt;ping ISE using VLAN interface as source&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Feb 2023 00:37:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767133#M579562</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-02-02T00:37:25Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767136#M579563</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/286878"&gt;@balaji.bandi&lt;/a&gt;&amp;nbsp;- other switches include:&lt;/P&gt;&lt;P&gt;IE-5000-12S12P-10G running&amp;nbsp;15.2(7)E3&lt;/P&gt;&lt;P&gt;IE-4010-16S12P running&amp;nbsp;15.2(7)E2&lt;/P&gt;&lt;P&gt;The C9500's that are working are:&lt;/P&gt;&lt;P&gt;C9500-48Y4C running Catalyst L3 Switch Software (CAT9K_IOSXE), Version 16.12.5b, RELEASE SOFTWARE (fc3)&lt;BR /&gt;&lt;BR /&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Feb 2023 00:41:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767136#M579563</guid>
      <dc:creator>benbroadfoot</dc:creator>
      <dc:date>2023-02-02T00:41:52Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767139#M579564</link>
      <description>&lt;H3 class="p_H2"&gt;Configuring TACACS+&amp;nbsp; ( see the syntax supported)&lt;/H3&gt;
&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/switches/lan/cisco_ie4010/software/release/15-2_4_EC/configuration/guide/scg-ie4010_5000/swauthen.html" target="_blank"&gt;https://www.cisco.com/c/en/us/td/docs/switches/lan/cisco_ie4010/software/release/15-2_4_EC/configuration/guide/scg-ie4010_5000/swauthen.html&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Other note: Cat 9500 running an old version (may be ROMMON version you showing) check if you running 16.12.X upgrade to 17.6.4 lot of security and bug fixed. the code 16.12,X no longer advised by TAC.&lt;/P&gt;</description>
      <pubDate>Thu, 02 Feb 2023 00:51:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767139#M579564</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2023-02-02T00:51:56Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767150#M579567</link>
      <description>&lt;P&gt;I recall in the past I had to use "&lt;SPAN&gt;&lt;SPAN class=""&gt;&lt;SPAN class=""&gt;server-private&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;" when connecting to tacacs servers via a management VRF.&lt;/P&gt;&lt;P&gt;But then again as some one mentioned above the tacacs configuration can differ from different cisco router/platforms, software versions.&lt;/P&gt;&lt;P&gt;&lt;A href="https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_tacacs/configuration/xe-16/sec-usr-tacacs-xe-16-book/sec-vrf-tacas-svrs.html " target="_self"&gt;https://www.cisco.com/c/en/us/td/docs/ios-xml/ios/sec_usr_tacacs/configuration/xe-16/sec-usr-tacacs-xe-16-book/sec-vrf-tacas-svrs.html &lt;/A&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Thu, 02 Feb 2023 01:30:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767150#M579567</guid>
      <dc:creator>iskandar</dc:creator>
      <dc:date>2023-02-02T01:30:46Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767152#M579568</link>
      <description>&lt;P&gt;pings OK using&amp;nbsp;&lt;SPAN&gt;VLAN interface as source&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;NSxxx#ping 10.x.x.1 source vlan xxx&lt;BR /&gt;Type escape sequence to abort.&lt;BR /&gt;Sending 5, 100-byte ICMP Echos to 10.x.x.1, timeout is 2 seconds:&lt;BR /&gt;Packet sent with a source address of 10.x.x.x&lt;BR /&gt;!!!!!&lt;BR /&gt;Success rate is 100 percent (5/5), round-trip min/avg/max = 1/2/4 ms&lt;/P&gt;</description>
      <pubDate>Thu, 02 Feb 2023 01:36:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767152#M579568</guid>
      <dc:creator>benbroadfoot</dc:creator>
      <dc:date>2023-02-02T01:36:38Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767155#M579569</link>
      <description>&lt;P&gt;OK after testing with some of these suggestions I have realised that the 'private-server' commands are working on any of the L2 switches, no matter which model it is (IE5K &amp;amp; 4010). On the IE5K's that have routing enabled it doesn't work &amp;amp; I have to use the 'tacacs server' commands which do work. Why would this make any difference?&lt;/P&gt;&lt;P&gt;As stated above I can ping the ISE interface useing the source option.&lt;/P&gt;</description>
      <pubDate>Thu, 02 Feb 2023 01:42:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4767155#M579569</guid>
      <dc:creator>benbroadfoot</dc:creator>
      <dc:date>2023-02-02T01:42:12Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4768777#M579645</link>
      <description>&lt;P&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1406092"&gt;@benbroadfoot&lt;/a&gt;, &amp;nbsp;"&lt;SPAN&gt;ip tacacs source-interface&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;Vlanxxx&lt;/EM&gt;" seems part of aaa server group only. Perhaps, that is causing it. Anyhow, good to verify no asymmetric routing by packet captures, etc.&lt;/P&gt;</description>
      <pubDate>Sun, 05 Feb 2023 00:47:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4768777#M579645</guid>
      <dc:creator>hslai</dc:creator>
      <dc:date>2023-02-05T00:47:56Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4768858#M579658</link>
      <description>&lt;P&gt;I make deep dive and I think find solution here,&lt;BR /&gt;I will share detail later today or max tomorrow.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 05 Feb 2023 11:18:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4768858#M579658</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-02-05T11:18:09Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4769929#M579682</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1065752"&gt;@MHM Cisco World&lt;/a&gt;&amp;nbsp;- any luck with this? very interested to hear what you have found! &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 06 Feb 2023 22:46:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4769929#M579682</guid>
      <dc:creator>benbroadfoot</dc:creator>
      <dc:date>2023-02-06T22:46:16Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4769932#M579683</link>
      <description>&lt;P&gt;sure I will share tonight,&lt;/P&gt;</description>
      <pubDate>Mon, 06 Feb 2023 22:50:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4769932#M579683</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-02-06T22:50:05Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4770459#M579689</link>
      <description>&lt;P&gt;Hi &lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1406092"&gt;@benbroadfoot&lt;/a&gt;&lt;/P&gt;
&lt;P&gt;Another way of testing reachability to TACACS server is "test aaa group &amp;lt;server group name&amp;gt; &amp;lt;user&amp;gt; &amp;lt;password&amp;gt; new-code" and check TACACS live logs on the server to check if it received any request.&lt;/P&gt;</description>
      <pubDate>Tue, 07 Feb 2023 13:58:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4770459#M579689</guid>
      <dc:creator>Nancy Saini</dc:creator>
      <dc:date>2023-02-07T13:58:59Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4773622#M579782</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1065752"&gt;@MHM Cisco World&lt;/a&gt;&amp;nbsp;- can you please share when you have a chance? Thanks &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 12 Feb 2023 23:56:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4773622#M579782</guid>
      <dc:creator>benbroadfoot</dc:creator>
      <dc:date>2023-02-12T23:56:20Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4775601#M579833</link>
      <description>&lt;P&gt;Hi&lt;BR /&gt;I dont forget you but I was busy,&amp;nbsp;&lt;BR /&gt;can I ask you some&amp;nbsp; about your config ?&lt;BR /&gt;1- are you use any VRF in your SW&amp;nbsp;&lt;BR /&gt;2-what is the IOS version you run&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Feb 2023 22:59:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4775601#M579833</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-02-14T22:59:28Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4775611#M579835</link>
      <description>&lt;P&gt;Hi&amp;nbsp;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/1065752"&gt;@MHM Cisco World&lt;/a&gt;&amp;nbsp;- no problems mate, any help from you guys is greatly appreciated!&lt;/P&gt;&lt;P&gt;1 - No VRF's are used&lt;/P&gt;&lt;P&gt;2- C9500-48Y4C running&amp;nbsp;Cisco IOS XE Software, Version 16.12.05b (working with &lt;SPAN&gt;aaa group server tacacs+ ISE_SERVERS&amp;nbsp;&lt;/SPAN&gt;ISE config)&lt;/P&gt;&lt;P&gt;IE-5000-12S12P-10G running IOS&amp;nbsp;15.2(7)E3 (connected to above C9500 &amp;amp; not working with &lt;SPAN&gt;aaa group server tacacs+ ISE_SERVERS&amp;nbsp;&lt;/SPAN&gt;ISE config but does work with the other ISE commands)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Thanks!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 14 Feb 2023 23:59:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4775611#M579835</guid>
      <dc:creator>benbroadfoot</dc:creator>
      <dc:date>2023-02-14T23:59:15Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4775613#M579836</link>
      <description>&lt;P&gt;&lt;SPAN&gt;same config except use server instead of server-private&amp;nbsp;&lt;BR /&gt;aaa group server tacacs+ ISE_SERVERS&lt;/SPAN&gt;&lt;BR /&gt;&lt;SPAN&gt;server&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;10.x.x.1&lt;SPAN&gt;&amp;nbsp;&lt;/SPAN&gt;&lt;/EM&gt;&lt;SPAN&gt;key 7&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;blablabla&lt;/EM&gt;&lt;BR /&gt;&lt;SPAN&gt;server&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;10.x.x.2&lt;/EM&gt;&lt;SPAN&gt;&amp;nbsp;key 7&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;blablabla&lt;/EM&gt;&lt;BR /&gt;&lt;SPAN&gt;ip tacacs source-interface&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;Vlanxxx &amp;lt;&amp;lt;- you confirm&amp;nbsp;that this VLAN is in global not in mgmt-vrf&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Wed, 15 Feb 2023 00:05:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4775613#M579836</guid>
      <dc:creator>MHM Cisco World</dc:creator>
      <dc:date>2023-02-15T00:05:33Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs+ 'aaa group server' vs 'tacacs server' commands</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4775618#M579837</link>
      <description>&lt;P&gt;just using&amp;nbsp;"&lt;SPAN&gt;server&amp;nbsp;&lt;/SPAN&gt;&lt;EM&gt;10.x.x.1" &lt;/EM&gt;does not accept the&lt;EM&gt; 'key' &lt;/EM&gt;command which is required.&lt;/P&gt;&lt;P&gt;The Vlanxxx is global yes&lt;/P&gt;</description>
      <pubDate>Wed, 15 Feb 2023 00:21:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-aaa-group-server-vs-tacacs-server-commands/m-p/4775618#M579837</guid>
      <dc:creator>benbroadfoot</dc:creator>
      <dc:date>2023-02-15T00:21:17Z</dc:date>
    </item>
  </channel>
</rss>

