cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2309
Views
5
Helpful
2
Replies

FTD AAA authentication

Vishnu_RR
Level 1
Level 1

Hi,

I need some clarity on FTD, FXOS and FMC.

If I configure TACACS+ for FCM, and Radius for FMC, based on what kind of authentication method that FTD would work.
Recently i removed TACACS+ configuration for FCM, so i am not able to login FTD with AAA credentials. I can login FTD with local credentials only.

 

If FTD works based on FCM AAA config, which are all the services would inherit from FCM to FTD & FMC to FTD.

2 Replies 2

@Vishnu_RR 

Management of FTD does not use the FCM AAA configuration.

FTD external authentication is configured under the platform settings policy. https://www.cisco.com/c/en/us/td/docs/security/firepower/670/configuration/guide/fpmc-config-guide-v67/platform_settings_for_firepower_threat_defense.html

FTD external authentication supports LDAP or RADIUS.

TACACS+ is not supported for FTD or FMC external authentication, only FCM supports TACACS+ for external authentication.

 

 

 

But when i removed the FXOS TACACS+ AAA authentication, i am not able to login FTD with AAA credentials and even FTD is not inherited the AAA configuration from FMC Radius platform settings also. but i can login FTD with local credentials.

Review Cisco Networking for a $25 gift card