08-10-2016 12:05 AM - last edited on 03-25-2019 05:35 PM by ciscomoderator
Hi Cisco,
Good day!
Need your help on my problem, the problem is that a switch that we are trying to integrate to ACS can't authenticate via TACACS. based on our testing and troubleshooting, the ACS before config is Single connect device and TACACS+ Draft Compliant Single Connect Support is chosen. but when trying to change the configuration to Legacy TACACS + Single Connect support it works fine.
Question: what is the standard procedure for enrollment 1 or 2 (See below) ? what is the different?
1. Single connect Device and TACACAS + Draft Compliant Single Connect Support
or
2. Just Legacy TACACS + Single Connect Support
08-11-2016 07:09 AM
Hi Erland,
The difference between Single connect Device and TACACAS + Draft Compliant Single Connect Support OR Legacy TACACS + Single Connect Support is former will send single connect flag to the NAS and latter will not send the single connect flag to NAS device.
You can also refer this draft for better understanding,
http://tools.ietf.org/html/draft-grant-tacacs-02
08-24-2016 02:23 AM
thanks for verification
05-18-2018 01:34 PM
Any recommended best practices for this setting?
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide