12-30-2004 05:47 AM - edited 03-10-2019 01:57 PM
i wish to secure my ACS using access-list. however, allowing just tcp port 49 and/or tcp/udp port 65 doesnt seem to work. is there any other ports i need to open?
12-30-2004 03:44 PM
When you say "it doesn't seem to work", what are you refering to, TACACS authentication or access to the ACS server for admin purposes?
Can you add a "deny ip any any log" rule to the bottom of your access-list and check which protocols are being dropped?
Thanks
PD
12-30-2004 10:49 PM
got it! thanks..
it seems the acs uses port 49 but the router uses a random high port number.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide