<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic I may have been mistaken in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3039366#M43133</link>
    <description>&lt;P&gt;I may have been mistaken earlier or remembering earlier versions. The documentaiton does seem to indicate external authentication can be used even for the sfr modules. I have not tried it myself as of yet.&lt;/P&gt;
&lt;P&gt;Do note that there is a bug (as of 6.2.0.2) with the RADIUS implementation.&lt;/P&gt;
&lt;P&gt;https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve60272/?referring_site=bugquickviewredir&lt;/P&gt;
&lt;P&gt;From the bug notes it appears that only applies to 6.2.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Thu, 20 Jul 2017 01:01:44 GMT</pubDate>
    <dc:creator>Marvin Rhoads</dc:creator>
    <dc:date>2017-07-20T01:01:44Z</dc:date>
    <item>
      <title>Tacacs / FirePOWER module</title>
      <link>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3039362#M43129</link>
      <description>&lt;P&gt;Is it possible to configure the actual FirePOWER software on an SSD for TACACs AAA or can local credentials only be configured / used for access?&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 13:46:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3039362#M43129</guid>
      <dc:creator>GRANT3779</dc:creator>
      <dc:date>2019-03-10T13:46:43Z</dc:date>
    </item>
    <item>
      <title>The FirePOWER Services module</title>
      <link>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3039363#M43130</link>
      <description>&lt;P&gt;The FirePOWER Services module on an ASA can only use local authentication.&lt;/P&gt;
&lt;P&gt;FirePOWER Management Center can use external authentication from either an LDAP or RADIUS server.&lt;/P&gt;
&lt;P&gt;Reference:&lt;/P&gt;
&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/firepower/620/configuration/guide/fpmc-config-guide-v62/firepower_system_user_management.html?bookSearch=true#ID-2263-00000006&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 22 Feb 2017 11:12:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3039363#M43130</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-02-22T11:12:25Z</dc:date>
    </item>
    <item>
      <title>Hi Marvin,</title>
      <link>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3039364#M43131</link>
      <description>&lt;P&gt;Hi Marvin,&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Noted, thanks. Confirms what I suspected so good to know for sure.&lt;/P&gt;</description>
      <pubDate>Wed, 22 Feb 2017 11:15:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3039364#M43131</guid>
      <dc:creator>GRANT3779</dc:creator>
      <dc:date>2017-02-22T11:15:38Z</dc:date>
    </item>
    <item>
      <title>Hi Marvin</title>
      <link>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3039365#M43132</link>
      <description>&lt;P&gt;Hi Marvin&lt;/P&gt;
&lt;P&gt;I have been researching the subject of getting external authentication working with FirePOWER Services (SFR) modules in an ASA 5500-X and see reference here to it working:&lt;/P&gt;
&lt;P&gt;https://supportforums.cisco.com/discussion/13118331/firepower-shell-authentication-radius&lt;/P&gt;
&lt;P&gt;In your post above you have provided a link to documentation but I cannot find where it specifically states that "The FirePOWER Services module on an ASA can only use local authentication".&lt;/P&gt;
&lt;P&gt;Can you please confirm where it is documented that local authentication only works with FirePOWER Services modules?&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;Damian&lt;/P&gt;</description>
      <pubDate>Wed, 19 Jul 2017 16:14:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3039365#M43132</guid>
      <dc:creator>dam0c0nr0y</dc:creator>
      <dc:date>2017-07-19T16:14:11Z</dc:date>
    </item>
    <item>
      <title>I may have been mistaken</title>
      <link>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3039366#M43133</link>
      <description>&lt;P&gt;I may have been mistaken earlier or remembering earlier versions. The documentaiton does seem to indicate external authentication can be used even for the sfr modules. I have not tried it myself as of yet.&lt;/P&gt;
&lt;P&gt;Do note that there is a bug (as of 6.2.0.2) with the RADIUS implementation.&lt;/P&gt;
&lt;P&gt;https://bst.cloudapps.cisco.com/bugsearch/bug/CSCve60272/?referring_site=bugquickviewredir&lt;/P&gt;
&lt;P&gt;From the bug notes it appears that only applies to 6.2.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Jul 2017 01:01:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3039366#M43133</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-07-20T01:01:44Z</dc:date>
    </item>
    <item>
      <title>Thanks Marvin - much</title>
      <link>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3039367#M43134</link>
      <description>&lt;P&gt;Thanks Marvin - much appreciate the additional info.&lt;/P&gt;
&lt;P&gt;Having read the details of that bug&amp;nbsp;&lt;SPAN&gt;CSCve60272 the symptoms we are experiencing with Firepower SFR software modules running 6.1.0.3 (which are managed by Firepower Management Centre 2000 appliances also running 6.1.0.3) look the same.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;I have raised a case with Cisco TAC asking them to check and confirm if bug CSCve60272 also affects&amp;nbsp;6.1.0.3 and if is to get 6.1.0.3 added to the list of "Known Affected Releases" for bug &lt;SPAN&gt;CSCve60272&amp;nbsp;&lt;/SPAN&gt;which currently only has releases 6.2.0 and 6.2.1 listed.&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Interestingly, we have RADIUS authentication to the&amp;nbsp;Firepower Management Centre 2000 appliances working fine with Cisco ACS. &lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;Is it&amp;nbsp;RADIUS authentication to the&amp;nbsp;&lt;SPAN&gt;Firepower SFR software modules which is not working with Cisco ACS.&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;
&lt;P&gt;Cheers&lt;/P&gt;
&lt;P&gt;&lt;SPAN&gt;&lt;SPAN&gt;Damian&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;</description>
      <pubDate>Thu, 20 Jul 2017 11:43:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3039367#M43134</guid>
      <dc:creator>dam0c0nr0y</dc:creator>
      <dc:date>2017-07-20T11:43:34Z</dc:date>
    </item>
    <item>
      <title>Thanks for the update. Please</title>
      <link>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3039368#M43135</link>
      <description>&lt;P&gt;Thanks for the update. Please let us know what the TAC finds out.&lt;/P&gt;
&lt;P&gt;If you want to do some testing yourself you should be able to do a packet capture of the RADIUS authenticaiton attempts and see what is happening at the protocol level.&lt;/P&gt;</description>
      <pubDate>Thu, 20 Jul 2017 13:56:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3039368#M43135</guid>
      <dc:creator>Marvin Rhoads</dc:creator>
      <dc:date>2017-07-20T13:56:57Z</dc:date>
    </item>
    <item>
      <title>Re: I may have been mistaken</title>
      <link>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3736997#M43136</link>
      <description>&lt;P&gt;Hi Marvin,&lt;/P&gt;
&lt;P&gt;Is FMC support TACACS+ for AAA Authentication ? And Is it&amp;nbsp;Radius support for AAA Authentication to make sure Because in this Article i this support for the Radius.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;thanks,&lt;BR /&gt;Charis&lt;/P&gt;</description>
      <pubDate>Thu, 01 Nov 2018 02:53:43 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tacacs-firepower-module/m-p/3736997#M43136</guid>
      <dc:creator>Charisdian Salim</dc:creator>
      <dc:date>2018-11-01T02:53:43Z</dc:date>
    </item>
  </channel>
</rss>

