cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
784
Views
0
Helpful
2
Replies

TACACS logging

Todd S
Level 1
Level 1

I recently upgraded from to 2.2 from 2.0 ISE and I am no longer getting any TACACS logging at all.  I've applied the most recent patches and no logging is occurring at all.  Am I missing some new feature that automatically disabled the logging?  I've captured debuts from a switch to verify it is sending TACACS AAA to ISE but still nothing in the logs.

2 Replies 2

Aditya Ganjoo
Cisco Employee
Cisco Employee

Hi,

Is it only happening for TACACS or even RADIUS logging is impacted?

What is the output of show application status ise from the MnT node?

Regards,

Aditya

Please rate helpful and mark correct answers

The ISE servers are only being used for TACACS and not radius.

cisco-ise3/admin# show application status ise

ISE PROCESS NAME STATE PROCESS ID
--------------------------------------------------------------------
Database Listener running 6704
Database Server running 81 PROCESSES
Application Server running 10665
Profiler Database running 7880
ISE Indexing Engine running 11742
AD Connector running 15548
M&T Session Database running 4895
M&T Log Collector running 10808
M&T Log Processor running 10717
Certificate Authority Service disabled
EST Service disabled
SXP Engine Service disabled
Docker Daemon running 14195
TC-NAC Service disabled

Wifi Setup Helper Container disabled
pxGrid Infrastructure Service disabled
pxGrid Publisher Subscriber Service disabled
pxGrid Connection Manager disabled
pxGrid Controller disabled
PassiveID WMI Service disabled
PassiveID Syslog Service disabled
PassiveID API Service disabled
PassiveID Agent Service disabled
PassiveID Endpoint Service disabled
PassiveID SPAN Service disabled
DHCP Server (dhcpd) disabled
DNS Server (named) disabled