cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2125
Views
0
Helpful
3
Replies

Integrate TACACS+ between Cisco WLC and Cisco ISE

Arie --
Level 1
Level 1

Hi,

 

I want to integrate Cisco WLC and Cisco ISE 2.3 for AAA using TACACS+.

From configuration guide on link below, we can set profile to authorize user what tab he/she can access.

https://communities.cisco.com/docs/DOC-68196

But, in Cisco WLC, the Internal User has capability to choose Read-Only or Read-Write without filtering what tab can be accessed. If I integrate the Cisco WLC to Cisco ISE for TACACS+, can I divide user profile only to Read-Only and Read-Write? Instead of divide user on what tab he/she can access.

 

Thank you

Arie

1 Accepted Solution

Accepted Solutions

You can assign your read-write users the role "ALL" and the read-only users the role "MONITOR".

View solution in original post

3 Replies 3

You can assign your read-write users the role "ALL" and the read-only users the role "MONITOR".

Great! Thank you. It's work.

Will a read-only user with the role "MONITOR" also apply to the CLI or only WebUI please?

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: