<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Enable password from ACS in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/enable-password-from-acs/m-p/2483207#M88198</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Salaam Kashif&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It is working I found the commands in that page which you were given.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks lot&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 11 Feb 2014 12:13:02 GMT</pubDate>
    <dc:creator>shahulhameed</dc:creator>
    <dc:date>2014-02-11T12:13:02Z</dc:date>
    <item>
      <title>Enable password from ACS</title>
      <link>https://community.cisco.com/t5/network-access-control/enable-password-from-acs/m-p/2483203#M88189</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;One of my customer has configured the below commands in switches. I created a user for accessing LMS to archive configuration.The user account successfully logged in to the switch but enable password is not taking from ACS it is taking from local enable password. After I addedd this command " &lt;/P&gt;&lt;P&gt;aaa authorization exec default group tacacs+ " the switch was not asking fro enable password. &lt;/P&gt;&lt;P&gt;The customer have ACS 4.2 in that I configured ACS the Shell command enabled and privilage 15.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please advise how to configur a user account in ACS only for LMS ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #0000ff;"&gt;aaa new-model&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #0000ff;"&gt;aaa authentication attempts login 5&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #0000ff;"&gt;aaa authentication login console none&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #0000ff;"&gt;aaa authentication login ssh group tacacs+ local&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #0000ff;"&gt;aaa accounting session-duration ntp-adjusted&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #0000ff;"&gt;aaa accounting exec default start-stop group tacacs+&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #0000ff;"&gt;aaa accounting commands 15 default start-stop group tacacs+&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #0000ff;"&gt;aaa session-id common&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #0000ff;"&gt;ip tacacs source-interface Vlanx&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #0000ff;"&gt;tacacs-server host 10.10.10.10 key 7 06098745612293E302426&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #0000ff;"&gt;tacacs-server timeout 60&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #0000ff;"&gt;tacacs-server directed-request&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Abdul Hameed&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 04:22:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/enable-password-from-acs/m-p/2483203#M88189</guid>
      <dc:creator>shahulhameed</dc:creator>
      <dc:date>2019-03-11T04:22:37Z</dc:date>
    </item>
    <item>
      <title>Re: Enable password from ACS</title>
      <link>https://community.cisco.com/t5/network-access-control/enable-password-from-acs/m-p/2483204#M88192</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;wel authentication method is fine in the configuration you have set the option if ACS authentication fails then local account will be used for authentication try to share the log message that you receive that will help to touble shoot as chances are the ACS is not authenticating the user. &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Feb 2014 10:01:52 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/enable-password-from-acs/m-p/2483204#M88192</guid>
      <dc:creator>kaaftab</dc:creator>
      <dc:date>2014-02-11T10:01:52Z</dc:date>
    </item>
    <item>
      <title>Re: Enable password from ACS</title>
      <link>https://community.cisco.com/t5/network-access-control/enable-password-from-acs/m-p/2483205#M88194</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Salaam Kashif&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I couldnt find any failed attempt or passed attempt against the user account in ACS. Where can I get the log?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;After I put this command " &lt;SPAN style="font-size: 10pt;"&gt;aaa authentication enable default group tacacs+ enable" &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;Local user account and ACS users account not able to access the switch the error was " error authentication" but when I run a test command the authentication was successfull.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 10pt;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Feb 2014 10:18:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/enable-password-from-acs/m-p/2483205#M88194</guid>
      <dc:creator>shahulhameed</dc:creator>
      <dc:date>2014-02-11T10:18:32Z</dc:date>
    </item>
    <item>
      <title>Re: Enable password from ACS</title>
      <link>https://community.cisco.com/t5/network-access-control/enable-password-from-acs/m-p/2483206#M88196</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;kindly check the link&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://www.dslreports.com/faq/9815"&gt;http://www.dslreports.com/faq/9815&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Feb 2014 10:55:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/enable-password-from-acs/m-p/2483206#M88196</guid>
      <dc:creator>kaaftab</dc:creator>
      <dc:date>2014-02-11T10:55:39Z</dc:date>
    </item>
    <item>
      <title>Re: Enable password from ACS</title>
      <link>https://community.cisco.com/t5/network-access-control/enable-password-from-acs/m-p/2483207#M88198</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Salaam Kashif&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It is working I found the commands in that page which you were given.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks lot&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 Feb 2014 12:13:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/enable-password-from-acs/m-p/2483207#M88198</guid>
      <dc:creator>shahulhameed</dc:creator>
      <dc:date>2014-02-11T12:13:02Z</dc:date>
    </item>
  </channel>
</rss>

