12-16-2019 02:39 AM
Hi All
We would like to do some authentication and authorization on our Cisco routers and switches.
We were looking at Windows NPS (Radius), however I believe that we cannot really do any authorization of commands and it is limited.
What other servers can we use for this, I guess we will need Tacacs? would we need Cisco ISE, or are there other ones out there?
cheers
12-16-2019 02:48 AM
12-16-2019 02:49 AM
12-16-2019 12:53 PM
As @Seb Rupik suggested you can use that one or if organization able to invest, do ISE (but if the devices are few up to 10 - not large, then the investment is not greate) - i would also look free radius.
MS NPS, ok you can do what you looking but not as easy as compared to other products if the user in Active directory.
then check the below guide : ( i used for one of the clinet it works, i like ISE / ACS (no longer) / Freeradius (if opensource prefered)
https://blog.skufel.net/2012/06/how-to-integrating-cisco-devices-access-with-microsoft-npsradius/
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide