cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1336
Views
5
Helpful
3
Replies

WCS 7 & ACS 5.2 TACACS

mross1572
Level 1
Level 1

I have configured the WCS to use the ACS 5.2 for TACACS according to all the documentation available and everything looks correct.

When logging in to the WCS i get a login failed, bad username or password.

The problem is i dont see a failed in the ACS nor do i see a hit next to the TACACS in the service selection rules.

its like the WCS and ACS cant communicate.

They are on the same subnet, this is making no sense to me.

We have multiple WLC's hitting this ACS for wireless user authentication via the RADIUS.

Anyone seen anything like this, or might there be a setting in the ACS somewhere blocking this?

Thank you for any assistance.

1 Accepted Solution

Accepted Solutions

sridhkri
Cisco Employee
Cisco Employee

Hi,

Use the bleow link to check all configurations are correct.

http://www.cisco.com/en/US/tech/tk722/tk809/technologies_tech_note09186a0080851f7c.shtml#topic5

and let me know if you still facing the issue.

Regards

Sridharank

View solution in original post

3 Replies 3

Nicolas Darchis
Cisco Employee
Cisco Employee

Please show us screenshot of the WCS config.

You must enable tacacs authentication but also set the management user authentication order to check first tacacs and then local.

Did you add the WCS as a tacacs client on ACS ?

It has to be something simple but that you forgot or something like that :-)

sridhkri
Cisco Employee
Cisco Employee

Hi,

Use the bleow link to check all configurations are correct.

http://www.cisco.com/en/US/tech/tk722/tk809/technologies_tech_note09186a0080851f7c.shtml#topic5

and let me know if you still facing the issue.

Regards

Sridharank

mross1572
Level 1
Level 1

Yeah, i discovered the problem shortly after, was the service rule was set to single result instead of rule based so it was only looking for radius and wasn't even processing TACACS in the ACS.

Thank you both.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card