cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
2205
Views
10
Helpful
1
Replies

Juniper firewall and tacacs over ise 2.1

mulhollandm
Level 1
Level 1

folks

I'm trying to get authenticated on a juniper firewall (screenos) using tacacs on ise 2.1

I've got my cisco kit working ok but the juniper tells me auth has failed even though the tacacs logs tells me it has succeeded

I seem to remember that acs 4.x had to pass an attribute value back to the juniper but I can remember

has anyone had this issue and found a resolution?

many thanks to anyone taking the time to reply

1 Reply 1

jambulo01
Level 1
Level 1

I ran into the same issue and had to create a new shell profile with custom attributes:

 

Type - Mandatory, Name - vsys, value - root

Type - Mandatory, Name - privilege, value - root