11-30-2011 06:55 AM - edited 03-11-2019 02:57 PM
Hi,
we are having a firewall asa 5520 .we have connected the management port and inside port to internal network and dmz port to dmz network.now we need to configure tacacs and other management tool on dmz devices through management port. The problem is the management devices tacacs and other are placed in internal network.
11-30-2011 08:24 PM
Hi,
So, what is the issue? Are you using TACACs with the ASA firewall or for devices on the DMZ? I dont see the problem, whatever the TACACs is located, the ASA should be able to get to it for proper aaa configuration. If you need to use the TACACS server for devices on the DMZ what you need to do is just to allow port tcp 49 across the ASA.
Mike
12-01-2011 03:03 AM
Hi,
I couldnt understand what the issue is. If you want to place the all the management tool and tacacs in the DMZ, then change the IP address and assign them in the DMZ segment.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide