cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
279
Views
0
Helpful
1
Replies

Radius / MS NPS admin NXOS

Ryan17
Level 1
Level 1

a few questions related to Radius authentication...

first, on NXOS 

How do I specify the order for authentication

On my nexus3000 config I have: 

aaa authentication login default group radius-servergroup
aaa authentication login console local

in the past on other gear I've used:

aaa authentication login default group radius-servergroup local

or

aaa authentication login default local group radius-servergroup

it looks like this is unsupported in the CLI. am I missing something?

2nd Question,

how do I define the role/permissions of the radius users.

I'd like to have Admins/Techs/Audit(RO) groups based on AD security group membership.

Thank you!

1 Reply 1

Ryan17
Level 1
Level 1

ok well, answered Q2 myself.

https://rbgeek.wordpress.com/2013/01/14/authenticate-the-cisco-devices-using-active-directory/

'vendor specific' radius settings and the following steps show how to set the user role.

still curious on Q1. If I can have an order configured for AAA?