cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2127
Views
0
Helpful
3
Replies

Integrate TACACS+ between Cisco WLC and Cisco ISE

Arie --
Level 1
Level 1

Hi,

 

I want to integrate Cisco WLC and Cisco ISE 2.3 for AAA using TACACS+.

From configuration guide on link below, we can set profile to authorize user what tab he/she can access.

https://communities.cisco.com/docs/DOC-68196

But, in Cisco WLC, the Internal User has capability to choose Read-Only or Read-Write without filtering what tab can be accessed. If I integrate the Cisco WLC to Cisco ISE for TACACS+, can I divide user profile only to Read-Only and Read-Write? Instead of divide user on what tab he/she can access.

 

Thank you

Arie

1 Accepted Solution

Accepted Solutions

You can assign your read-write users the role "ALL" and the read-only users the role "MONITOR".

View solution in original post

3 Replies 3

You can assign your read-write users the role "ALL" and the read-only users the role "MONITOR".

Great! Thank you. It's work.

Will a read-only user with the role "MONITOR" also apply to the CLI or only WebUI please?