cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2165
Views
3
Helpful
2
Replies

ISE 2.x: Need a device profile for F5 in ISE as a NAD

musultan
Cisco Employee
Cisco Employee

Hello,

I am trying to add F5 to authenticate via Tacacs+ with Cisco ISE as a NAD device and didn't find a identify a device profile . The device profile section only has some device vendors on the list and I am trying to put in a profile for F5.

Should we have to create the custom as per the following doc;

I see some of the vendor profiles in the following location;

https://communities.cisco.com/tags/ise-nad-config

How To: Create Network Access Device Profiles with Cisco ISE.

https://communities.cisco.com/docs/DOC-68199

Please advise...

1 Accepted Solution

Accepted Solutions

thomas
Cisco Employee
Cisco Employee

Dustin is right - you can just use the Cisco Device Profile for TACACS+ Device Administration.

Custom NAD PRofiles are only needed when are trying to use the RADIUS protocol to control network access for endpoints and there are vendor-specific attributes or even complete lack of some capabilities to worry about.

I also found other examples of other people ( https://www.packetnotes.com/f5-ise-tacacs/ ) successfully integrating f5 and ISE for TACACS.

Please see Device Administration (TACACS+) for some of our other TACACS+ configuration guides and videos about how to add devices.

View solution in original post

2 Replies 2

Dustin Anderson
VIP Alumni
VIP Alumni

We just have our F5 with the cisco profile. Most of the access restrictions are on the F5, se we just check that the user is a network admin.

thomas
Cisco Employee
Cisco Employee

Dustin is right - you can just use the Cisco Device Profile for TACACS+ Device Administration.

Custom NAD PRofiles are only needed when are trying to use the RADIUS protocol to control network access for endpoints and there are vendor-specific attributes or even complete lack of some capabilities to worry about.

I also found other examples of other people ( https://www.packetnotes.com/f5-ise-tacacs/ ) successfully integrating f5 and ISE for TACACS.

Please see Device Administration (TACACS+) for some of our other TACACS+ configuration guides and videos about how to add devices.