cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
688
Views
5
Helpful
1
Replies

Cisco ACS for Unix and RSA SecurID v6.0

w-price
Level 1
Level 1

I'm attempting to upgrade to ACS 2.3.6(2). I've already upgraded to RSA SecurID v6.0.2. ACS 2.3.6.2 works great with an old SecurID v4.X server I have lying around. It refuses to work with my production SecurID 6.0.2 server. Ideas/comments/empathy ;-) welcome.

1 Reply 1

w-price
Level 1
Level 1

Score one for the TAC (Juan Ramos). A solution for getting ACS to work with 6.0.2 is as follows (it assumes you know a little bit about ACE servers):

1) On the ACE server, define acting servers for the ACS.

2) Generate a new sdconf.rec and place it appropriately on the ACS.

3) Ensure that the DNS used by the ACE servers properly references the ACS.

4) Add the following parameters to CSU.cfg:

NUMBER config_sdi_async_response_timeout = 10;

NUMBER config_get_names_from_dns = 1;

NUMBER config_logging_configuration = 0x7fffffff;

5) Restart/start CiscoSecure with utils/kcs and utils/scs.