cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
Announcements
Announcements
Choose one of the topics below to view our ISE Resources to help you on your journey with ISE

This community is for technical, feature, configuration and deployment questions.
For production deployment issues, please contact the TAC! We will not comment or assist with your TAC case in these forums.
Please see How to Ask the Community for Help for other best practices.

924
Views
0
Helpful
4
Replies
Highlighted

ACS 5.2 integration with RSA allow only one login every min

Hello


I have an ACS 5,2.0.26-8 running on VM intergrated with RSA. Users are able to login using their RSA passcode for network management utilizing TACACS. The problem seam to be related with RSA token caching. Once a user login sucessful on device A using current token he can not login with the same token on another device. User must wait for a new token and then he can login again. 

Before moving to ACS 5.2 we were using ACS 4.2 (intergrated with the same RSA) and back then ACS 4.2 cache passcode so user where able to login on devices using the same passcode. When the token change user have to use the new one. 

Does anyone know a way to overcome this problem providing the same functionality like the "Token Card Settings" Durantion option under group properties, to cache token for a specific period. The global option for caching under RSA definition on 5.2 does not solve the problem. (make on difference)

Thank you in advance

Everyone's tags (3)
4 REPLIES 4
Beginner

ACS 5.2 integration with RSA allow only one login every min

Hi,

Did you get this resolved or it is still same.

Regards

Aijaz

ACS 5.2 integration with RSA allow only one login every min

Hi,

This problem still remains. Using ACS 5.2 each RSA token can only be used once. This outcome is from our experience and testing

Regards

Haris

Beginner

ACS 5.2 integration with RSA allow only one login every min

Hi Haris,

Thanks for info. Did you raise any TAC case for this. Or did you had response from Cisco.

Thanks

Aijaz

Rising star

ACS 5.2 integration with RSA allow only one login every min

RSA token caching is a commited feature for ACS 5.5 scheduled for FCS towards the end of this year