Network Access Control

Cisco Access Control Server (ACS), Identity Services Engine (ISE), Zero Trust Workplace
cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
This community is for technical, feature, configuration and deployment questions.
For production deployment issues, please contact the TAC! We will not comment or assist with your TAC case in these forums.
Please see How to Ask the Community for Help for other best practices.

Labels

Forum Posts

hello,i have a issue where the same command which is denied in IOS switches is allowed in catOS switches. No idea why it happens since my TACACS server(free tacacs server from cisco) denies the sh conf or sh run command for a particular userwhen a us...

trackme by Level 1
  • 793 Views
  • 4 replies
  • 0 Helpful votes

We use ACS for windows 3.2 for authentication users on our router and switches. Now i want to configure AAA access to our Cisco 1100 AP's. For normal VTY (telnet) access it's no problem but de web interface witch use ip http authentication aaa the co...

nijholt by Level 1
  • 1014 Views
  • 2 replies
  • 0 Helpful votes

When I use two tacacs-server, the tacacs dosn't take the secondary tacacs-server. When one of the tacscs servers are down, the router takes always the first.Image:c3640-ik9s-mz.124-5a.binConfig:aaa new-modelaaa authentication login default group taca...

jbolmbvag by Level 1
  • 698 Views
  • 3 replies
  • 0 Helpful votes

HiI have NAC working using CTA 2.0. I need to configure a secondary ACS to act as a backup. Is there any configuration I need to manually set on the secondary ACS (apart from the logging and certificates) before I start synchronising the config fro...

The ACS appliance talks to the AAA client on the standard Tacacs port 49 destine for port 11xxx on the AAA client. The Client then replies to the ACS appliance on that same 11xxx port destine for port 49 on the ACS appliance. Anyone know the port ra...

helm123 by Level 1
  • 861 Views
  • 2 replies
  • 0 Helpful votes

Is there any work-around for ACS to support windows password aging/expiring ? We are using ACS 3.3 applicance and find out user is being lockout when change password in the next log-on box is checked in Microsoft AD. We do see the box prompting for c...

lorcs by Level 1
  • 585 Views
  • 1 replies
  • 0 Helpful votes