05-03-2013 03:34 AM - edited 03-10-2019 08:23 PM
Hi,
Is this software Out Of Date? This is what we run at the moment for authentication, but not to sure if theres a "bigger newer" piece of software out there for TACACs authentication?
I'm also looking to limit certain users and only have limited commands available to them when logging into devices through TACACs. Is this something I can achieve via ACS?
Thanks
05-03-2013 05:07 AM
Hi Grant,
ACS 4.2:
http://www.cisco.com/en/US/prod/collateral/vpndevc/ps5712/ps2086/end_of_life_notice_c51-664639.pdf
The above link will guide you.
ACS 5 is the newer, bigger piece, currently in its 4th Gen (ACS 5.4).
For your second question:
Rate if useful
05-03-2013 05:33 AM
Further to what Edward sugested, Identity management has gone way ahead.
We have ACS 5.x and ISE these days in the market and both are showing excellent performance. As of now, ISE doesn't support TACACS. However, it will be there soon.
ACS 5.x require 500Gb of hard disk space configured in the ESX virtual machine for it to install and run correctly. Virtual machines configured with less than 500Gb hard disk or equal to 60 GB will be considered as EVALUATION version and TAC support will be limited on it.
Installing ACS in a VMware Virtual Machine
FAQ's Cisco Secure Access Control System 5.4
http://www.cisco.com/en/US/prod/collateral/netmgtsw/ps5698/ps6767/ps9911/qa_c67-718298.html
In case you are intrested to perform command authorization based on your AD groups with ACS 5. here is a link for your ready refrence.
ACS 5.x: TACACS+ Authentication and Command Authorization based on AD group membership Configuration Example
http://www.cisco.com/en/US/products/ps9911/products_configuration_example09186a0080bc8514.shtml
Let us know in case you still have any query or concern.
Jatin Katyal
- Do rate helpful posts -
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide