10-24-2022 12:49 AM
Hello, i am finaly migrating from ACS to ISE, but i have a question regarding radius token server.
We want as little downtime as possible, so thats why im asking.
In acs i have set up a remote radius server for identity like this.
Im under the understanding that i can only use one attribute with a radius token server in ISE, but my question is what should i put under Authorization: To match my old config?
When doing a debug on a device, i'm seeing the following: Cisco-AVPair = 'ACS:CiscoSecure-Group-Id=200'
So i guess the attribute name should be ACS:CiscoSecure-Group-Id ?
Solved! Go to Solution.
10-30-2022 03:49 PM
This question brings back distant memories when I had to do the same thing. ISE still prefixes the "ACS:" part - so all you need to configure into ISE GUI is 'CiscoSecure-Group-Id'
10-30-2022 03:49 PM
This question brings back distant memories when I had to do the same thing. ISE still prefixes the "ACS:" part - so all you need to configure into ISE GUI is 'CiscoSecure-Group-Id'
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: