cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
391
Views
5
Helpful
1
Replies
Highlighted
Beginner

TACACS config & Testing on Cisco Devices using Python

I have an script to send the TACACS config using Netmiko for nearly 1000 devices, but how should we test it before we exit out of session if any thing goes wrong. This is part of ACS migration TACACS_Plus library is not helping it this.

Everyone's tags (3)
1 REPLY 1
Highlighted
VIP Advisor

Re: TACACS config & Testing on Cisco Devices using Python

Hi there,

Create a service account (ie in the local user store on your TACACS server (ACS or ISE) ) and ensure it only has 'priv 1' access.

 

Have your script run the command:

test aaa group tacacs+ <service_acc_name> <service_acc_pass> new-code

...then regex the returned result for the string "User successfully authenticated"

 

cheers,

Seb.

 

This widget could not be displayed.