Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Dear all,I'm having an issue with TACACS+ AAA setup with a Nexus 7000 running 4.2(2a) and ACS 4.2. I've added the av-pair string of shell:roles="network-operator vdc-admin" into the TACACS+ settings under the group custom attributes. When I log in I ...
All,Just for reference we've fixed this. The based VDC always seemed to honour the PRIV 15 under the ACS group and gave you network-admin, the correct syntax for vdc-admin passthrough on the av-pair is:shell:user=admin-vdcThat's all you need.Regards,...
Dominic,Can you double check you have 'Use Outer Identity' checked under 'System Configuration / Global Authentication Setup / Allow EAP-TLS" If you don't then the ACS uses the incorrect details from the digital certificate and it can then authentica...