cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1054
Views
0
Helpful
1
Replies

ACS 5.8 Reports - TACACS Accounting & Authorization

Martin Bosch
Level 1
Level 1

Hi all,

I have a migrated database from 4.2. I have done some tuning but have noticed under my TACACS Accounting & Authorization I only see one user always.

All my administrators are on the same group as the user I am seeing in the logs.

Under "

System Administration Configuration >  Log Configuration >  Logging Categories >  Global > 

Edit: "TACACS Accounting"

The log to local target was ticket.

and under

System Administration Configuration >  Log Configuration >  Logging Categories >  Global >  Edit: "Administrative and Operational Audit"

that's grayed out.

Any idea's how to address this so I can see the rest of the administrators?

Regards,

Martin

1 Reply 1

Martin Bosch
Level 1
Level 1

I am running a distributed setup.
This is how it was resolved for anyone else that might have the same issue.

1)    My log server was the on the primary unit, this was moved to the secondary unit.
a.    System administration
b.    Configuration
c.    Log Configuration
d.    Logging Categories
e.    Log Collector     -> Changed to Secondary.

2)    At this point we noticed that the TACACS Accounting and Authentication started working correctly but not the Authorization.

3)    Then on the secondary unit (Active log collector) we reset the Database

a.    Logon via CLI using your cli admin account
b.    Type in “acs-config”
c.    The Password it ask for next is your Web admin password
d.    Type in acsview replace-cleandb
e.    This process took about 15- 20 minutes.

4)    And that was it.. after that all was 100’s again – I hope this helps someone else that might ran in to the same issue

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: