Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Could anyone give me some assistance or at least some pointers on this one? I'm running ISE 2.6.0.156. I'm trying to figure out how to get it working so that our Juniper devices (we have several, like the SRX550 for example) can use ISE with RADIUS f...
I'm hoping someone could give me some pointers as to how I could get this working. I've been tasked with testing Cisco ISE for possible wide deployment at my company. (2,000+ network devices) The goal is to get TACACS+ working for authentication as...
#FACEPALM Thanks for that tip. I've been focused almost exclusively on the TACACS+ support. Our Juniper devices we have can only do RADIUS and the weird division in ISE between TACACS+ and RADIUS configuration is definitely confusing. Starting to ...
Thanks, Arne. I'll have to adapt that to my own environment, but I think that fills in that missing piece. I didn't notice it was possible to use an LDAP attribute as the value for the Juniper-Local-User-Name attribute. I can work with that. I'm j...
Thanks for the reply, though I already had that part set up. Let me demonstrate what I mean with my freeradius configuration. In freeradius, this works: DEFAULT ldap_firewall_virtual_server-LDAP-Group == "operator_ldap_group_name" Service-Type = ...
Just to close the loop, this specific guide linked off of that page is what did it for me: https://www.cisco.com/c/en/us/support/docs/security/identity-services-engine/200208-Configure-ISE-2-0-IOS-TACACS-Authentic.html I'm not using AD, plus the new...