04-12-2023 03:30 PM
Hello there!
I just configured a wireless lan controller model 9800 and now we are working to integrete it with ISE to be able to use Tacacs.
I've followed the site (see below) step by step and the network user is able to authenticate through SSH and HTTP, but now my supervisor wants to be able to use his own tacacs password instead of the local enable password. I mean type the same password twice.
How can I do that?
Cheers!
Solved! Go to Solution.
04-12-2023 04:20 PM
but now my supervisor wants to be able to use his own tacacs password instead of the local enable password
If you are integrated with ISE for TACACS (and any other external source like AD, your supervisor can use his own AD account password)
as soon as you enable TACACS, there is no Local password works and only works when TACACS not reachable and fall back to Local
04-12-2023 04:20 PM
but now my supervisor wants to be able to use his own tacacs password instead of the local enable password
If you are integrated with ISE for TACACS (and any other external source like AD, your supervisor can use his own AD account password)
as soon as you enable TACACS, there is no Local password works and only works when TACACS not reachable and fall back to Local
04-13-2023 05:54 AM
Hello,
Totally agree you, after logging with our AD account we are able to access to the device, nevertheless after login in we have to type the local enable password to access to Enables privileged EXEC mode.
How can I avoid this?
04-13-2023 10:01 AM
If you followed the configuration guide you should have all authentication going to TACACS as @balaji.bandi says.
If not then you must still have enable configured to use local.
10-05-2023 10:01 AM
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide