cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1554
Views
10
Helpful
3
Replies

AAA for authentication and priv levels - which software?

carl_townshend
Spotlight
Spotlight

Hi All

We would like to do some authentication and authorization on our Cisco routers and switches.

We were looking at Windows NPS (Radius), however I believe that we cannot really do any authorization of commands and it is limited.

What other servers can we use for this, I guess we will need Tacacs? would we need Cisco ISE, or are there other ones out there?

cheers

3 Replies 3

Seb Rupik
VIP Alumni
VIP Alumni

I have used this product to good effect in the past:

 

https://tacacsgui.com/

 

cheers,

Seb.

Jaderson Pessoa
VIP Alumni
VIP Alumni
Hello,

I really suggest Cisco ISE i've used it and it is magic about what we can do :)
Jaderson Pessoa
*** Rate All Helpful Responses ***

balaji.bandi
Hall of Fame
Hall of Fame

As @Seb Rupik suggested you can use that one or if organization able to invest, do ISE (but if the devices are few up to 10 - not large, then the investment is not greate) - i would also look free radius.

 

MS NPS, ok you can do what you looking but not as easy as compared to other products if the user in Active directory.

then check the below guide : ( i used for one of the clinet it works, i like ISE / ACS (no longer) / Freeradius (if opensource prefered)

 

https://blog.skufel.net/2012/06/how-to-integrating-cisco-devices-access-with-microsoft-npsradius/

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help