cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3885
Views
0
Helpful
2
Replies

How can I have my Cisco router authenticate through my FreeIPA?

aleblanc501
Level 1
Level 1

Hello,

 

As the above states I am trying to get my Cisco router to authenticate through our FreeIPA server and cannot find any info on this anywhere. The only thing I get is how to setup the router to be an LDAP server and I do not want that. Has anyone else done this before? Any info will help.

 

Thanks,

Adam

2 Replies 2

Seb Rupik
VIP Alumni
VIP Alumni

Hi there,

For authentication, you need a service which support TACACS or RADIUS. FreeIPA supports neither, it is a directory server.

 

If you want to use FreeIPA I suggest you configure freeRADIUS and specify the FreeIPA server as a LDAP Directory server. Configure your Cisco devices to authenticate against the FreeRADIUS server.

 

This guide will get you some of the way there:

https://www.freeipa.org/page/Using_FreeIPA_and_FreeRadius_as_a_RADIUS_based_software_token_OTP_system_with_CentOS/RedHat_7

 

cheers,

Seb.

Thank you for the info, I will look into this and let you know how it goes.