Core issue
This issue is documented in Cisco bug ID CSCeh80447.
This problem occurs when a CiscoSecure ACS for Windows solution engine version 3.3.2 has a Network Device Group (NDG) with two default *.*.*.* Authentication, Authorization, and Accounting (AAA) Clients configured (one for TACACS, another for RADIUS).
When the CiscoSecure ACS for Windows appliance is rebooted, an AAA Client IP address can be changed from the default *.*.*.* to the IP address of that of the CiscoSecure ACS appliance.
Resolution
For a workaround, do not use the wildcard format for an AAA Client. Otherwise, after a CiscoSecure ACS for Windows appliance is rebooted, manually correct the IP address for the default AAA Client.
Problem Type
Troubleshoot software feature
Product Family
Cisco Secure access control server
Cisco Secure Access Control Server (ACS)
ACS Solution Engine Software version 3.3
ACS Solution Engine Software version 4.0
Features & Tasks
Authentication, Authorization, Accounting (AAA)