AAA/Identity/Nac :: Cisco ACS 1121 Integration With AD?

May 15, 2011

integrated the Cisco ACS 1121 with 5.1 and AD and been able to use multiple policies to permit or deny access to different NDG?  I am able to authenticate agains AD but I am having an issue with getting the policies to use the user memberOf attribute to set access levels. 

View 1 Replies


ADVERTISEMENT

Cisco AAA/Identity/Nac :: Use Acs 5.2 Recovery DVD To 1121 Acs 5.1?

May 31, 2013

It's impossible to use acs 5.2 recovery DVD to cisco 1121 acs 5.1?

View 7 Replies View Related

Cisco AAA/Identity/Nac :: ACS 1121 With V5.0 PAK Lost

Jan 6, 2012

It has been more than a year since a customer bought a Cisco ACS 1121. It was unpacked then and the PAK is lost, no where to be found. Is there any way to retrive the lost PAK ?

View 19 Replies View Related

Cisco AAA/Identity/Nac :: Replacement Of ACS 1121

Jun 7, 2013

I have a clarification related with ACS 1121. Client needs a solution for ACS feature, instead of investing on ISE Base, is there any model exists as ACS appliance only. I believe ACS 1121 is going to be EOS and it says SNS 3415 is the replacement model .
 
What I am confused is , It is an ISE as well as ACS and there is separate licensing for ISE (as base and advanced). What should i do , if i need to select SNS 3415 as ACS appliance ? is it built in or should i need to add anything extra ?       

View 3 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.1 With AD Integration

Mar 14, 2011

first i configure the ACS to Synchronize time from AD as NTP server second when i configure the integration between the ACS and AD and test the connection there is no output from this test but i see that the domain is connected and the end of the page the problem is when i try to navigate the groups by go to directory group and use select there is no output.

View 3 Replies View Related

Cisco AAA/Identity/Nac :: WLC Integration With NAC 4.9(1) L3 OOB

Apr 15, 2013

Is it possible to integrate a WLC with a NAC 4.9(1) L3 OOB? I can't find any documentation that says that it is possible or not.

View 9 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.3 Integration With RSA?

Dec 24, 2012

I have Integrated the ACS 5.3 with AD.Now my next goal is to Integrate ACS with RSA in such a way that all my Cisco devices should use the username and password from the AD.The enable privilege level should come from the RSA Token OTP.Is it possible to do such a thing with ACS 5.3?

View 3 Replies View Related

Cisco AAA/Identity/Nac :: Integration Of WLC (7.0.235) With ISE?

Nov 20, 2011

We have a customer who wants to configure his guest wireless network in such way that the guest should fill in a self registration form and generate the username and password themselves. For this purpose we are using cisco ISE but we don't know how to integrate it with cisco WLC.

View 1 Replies View Related

Cisco AAA/Identity/Nac :: Integration Of ACS 4.2 With AD

Jun 24, 2012

We have an ACS running 4.2. I am sure that this ACS is talking to our AD database because our wireless users (using ACS as RADIUS servers) are able to log in using their Windows AD account.
 
However, I am not sure how ACS is integrated with AD. Our ACS is installed on a windows 2003 R2 server. I am not sure where the AD database is?  ie,if AD is on the same server as ACS OR on a different server [ADs managed by different group altogether :-(  ].

How is the integration done between ACS and AD when both are on the same windows server? And How is the integration done between ACS and AD when they are on different windows servers?

ACS is software installed on windows 2003 R2 server.

View 2 Replies View Related

Cisco AAA/Identity/Nac :: ACS 1121 Appliance Downgrade To 4.2.0.124

May 2, 2011

Newly shipped cisco  ACS appliance 1121 has been shipped with ACS version 5.0 , I need to downgrade to ACS version 4.2,0 , I could not see recovery CD or DVD for acs 4.2 along with shipment , Is ACS 1121 appliance is comptaible to acs 4.2.0 version ? .
 
My ACS BOM details
CSACS-1121-K9
ACS 1121 Appliance With  5.1 SW And Base license

[code]....

View 2 Replies View Related

Cisco AAA/Identity/Nac :: How To Configure LAN Teaming In ACS 1121

Mar 27, 2011

how to configure LAN teaming in Cisco ACS 1121. My requirement is to have virtual IP in the server with two physical IPs in the available 2 interface in the server.

View 1 Replies View Related

Cisco AAA/Identity/Nac :: ACS 1121 With 5.3 MIB For SNMP Monitoring

Mar 26, 2012

I am trying to add ACS 1121 (ver 5.3) to monitoring and seems that MIB are missing. Need MIB for this device which I can use in monitoring tool.

View 1 Replies View Related

Cisco AAA/Identity/Nac :: Monitoring ACS 1121 Via SNMP?

Aug 13, 2012

I have 5 installations of ACS appliances (ACS 1121 running ACS 5.3). Is there a way to monitor them via SNMP? The AD client keeps dying on one of them, and even with the newest patch it's not up. Also, i want to monitor them up/down, CPU, memory... basic network monitoring to make sure my devices are  healthy.
 
Any one know if that can be configured? I figured i'd ask here before opening a TAC.

View 2 Replies View Related

Cisco AAA/Identity/Nac :: CSACS-1121-K9 - Dual NIC

Aug 11, 2011

Is it possible to have Dual NIC on ACS v5.2 such as teaming or any else??
 
I am thinking of connecting the two NIC on the CSACS-1121-K9 appliance to two switches on the same network, but wondering if it will be possible or not.

View 1 Replies View Related

Cisco AAA/Identity/Nac :: Applying A Patch To ACS 1121

Jun 3, 2012

I have an issue with applying a patch to an ACS 1121 appliance running version 5.2.0.26. I have 5 units that needed updating and the first one is the unit with the problem. The subsequent ones updated with no issues.
 
When I do a show version the 5.2.0.26.10 does not show. When I try to do a reinstall I get back patch all ready exists. When I try to do an uninstall I get back patch does not exist.

Is there a command can wipe out patch 10, so I can start over? The CLI factory-reset only wipes the web configuration not the running-config or IOS.

View 7 Replies View Related

AAA/Identity/Nac :: 1121 - Add Secondary ACS Server 5.4?

May 29, 2013

My customer has an ACS 1121 version 5.4. Now we want to install a secondary ACS 1121.

View 2 Replies View Related

Cisco AAA/Identity/Nac :: ACS 4.2 Integration With AD 2008 R1?

Jul 13, 2011

I have configured my WLC 4402 for Radius authentication using Cisco ACS server version 4.2 Patch 4. When using Local Database of ACS my Wireless Users are able to authenticate but users are not able to authenticate from External Database of Windows AD 2008 R1.
 
In ACS logs I am getting the this error- Authentication session timed out. Challenge not provided by client.

View 3 Replies View Related

Cisco AAA/Identity/Nac :: Prime NCS Integration With ACS 5.1?

Jan 29, 2013

We've an issue with authorization on NCS system. NCS successfully integrated witch ACS, but there is a problem with one user. All users have equivalent rights under root. There is shell profile with all possible tasks (exported from NCS server) configured on ACS. All users exept this one (unlucky one:)) authorizes successfully.  In  ACS logs, authentification and authorization status for this user is passed and all attributes (policy, profile, AV-pairs e.t.c.) is the same as for another users. This 'unlucky' user gets a following message: There is surely no browser or network issue. Tried from different PCs with same result. There is no any local info related to this username on the NCS server. When i change one charecter in the username on his ACS account, everything works well.

Our ACS v
Version 5.1.0.44.X
And NCS
Version : 1.1.2.X

View 1 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.2 Integration With LDAP?

Jun 22, 2011

provide me  Step by Step procedure for integrating LDAP with ACS 5.2 .

View 1 Replies View Related

Cisco AAA/Identity/Nac :: ACS 1121 V 5.3 NTP Offset Increasing With Server In Same LAN

Oct 31, 2012

Im installing & configuring a new ACS 1121. Ive updated to version 5.3 with patch:This temporarily solves my Active Directory problem but i still would like to have the NTP server pointing to the same reference as the Active Directory.

View 1 Replies View Related

AAA/Identity/Nac :: Procedure To Migrate From ACS SE 4.0.1 (1112) To ACS SE 5.2 (1121)

Jan 11, 2012

I have to migrate two appliances ACS SE 1112 under 4.0.1 to new two appliances ACS SE 1121 under 5.2 version.I would like to clarify the procedure to do it by minimizing down time impact.I saw there are Migration Utility and Import Tool but do I need an Intermediate Windows Server to do this migration ?

View 1 Replies View Related

Cisco AAA/Identity/Nac :: ISE 1.1.1 With Domino LDAP Integration?

Oct 23, 2012

know about Domino LDAP ? I would like to integrate this LDAP with Cisco ISE.I try to bind this LDAP but it does not show me anything in "Naming Context". So I cannot choose group to map into ISE.I test this on WLC. It is success to do but cannot make the same thing with Cisco ISE.Is this LDAP supports with Cisco ISE 1.1.1 ?

View 3 Replies View Related

Cisco AAA/Identity/Nac :: Active Directory Integration Acs 5.1?

Aug 24, 2011

I'm attempting to integrate an acs 5v into the domain through the gui. The connection will establish, and the status will read 'connected', just as it lists the domain I've submitted. However, I can't seem to find anything listed under the directory groups, and when I run a connection test, I simply get 'Global Catalogue port status error.' Eventually, I'd like to configure this as a radius server.

View 1 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.2 Integration With RSA Allow Only One Login Every Minute?

Nov 1, 2011

I have an ACS 5,2.0.26-8 running on VM intergrated with RSA. Users are able to login using their RSA passcode for network management utilizing TACACS. The problem seam to be related with RSA token caching. Once a user login sucessful on device A using current token he can not login with the same token on another device. User must wait for a new token and then he can login again.  Before moving to ACS 5.2 we were using ACS 4.2 (intergrated with the same RSA) and back then ACS 4.2 cache passcode so user where able to login on devices using the same passcode. When the token change user have to use the new one. providing the same functionality like the "Token Card Settings" Durantion option under group properties, to cache token for a specific period. The global option for caching under RSA definition on 5.2 does not solve the problem.

View 4 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.1 Integration With NGenius Server

Mar 8, 2011

I'm currently working on ACS 5.1 to use it as AAA server for Netscout NGenius.I followed a guide for ACS 4.2 and tried to replicate the configuration settings in ACS 5.1.
 
- created a host profile on network devices and AAA clients having the same shared key with NGenius
 
- added three (3) NGenius required attributes in system administration > configuration > identity > internal users
 
- added attribute values to Internal User database
 
- created an access policy:
         
* identity pointing to Internal Users
 
- edit serverprivate.properties in NGenius server to match the requirements
 
I would like to have NGenius authenticate via ACS 5.1, but as of the moment there is an error message that I receive:

Unicentified error, Code=16510, Details: AV pairs do not match NGenius format ::<insert tacacs username here>, Severity 1, Code: 16510.

View 2 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.2 Active Directory Integration

Apr 24, 2012

A customer uses Active Directory where some group names contain special characters (ç ~ '^). The Cisco ACS 5.2 is presenting the warnings: "Not all Active Directory user groups are retrieved successfully. One or more of thegroup's canonical name was not retrieved "(Category CSC Oacs_ Identity_ Stores_Diagnostics; code 24457).

What are the results of these warnings to the customer's network? Slow? Loss of access?

View 1 Replies View Related

Cisco AAA / Identity / Nac :: Nexus 7009 - Integration Of ACS With RSA

May 29, 2012

We have Nexus7009 at client network but due to limitation of Nexus switches that they can not be directly integrate Nexus with RSA so client has purchased cisco ACS for the AAA. We are able to do the authentication and authorization via ACS.However clients wants to further integrate the ACS with RSA so that authentication should happen via RSA and authorization should happen ACS. Is that possible ? if yes, how can i configure the ACS ?

View 5 Replies View Related

Cisco AAA/Identity/Nac :: Integration Of ACS 4.2 And MS Active Directory

Oct 21, 2010

configure the Cisco ACS to authenticate the users from MS Active Directory. Cisco Acs = 4.2.1(15)Currently, i have multiple users configured as local databse. but now i want to authenticate with the domain users.

View 11 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5.2 Multi Forest AD Integration?

Aug 24, 2011

Domain A (Forest 1) <--Two Way Trust--> Domain B (Forest 2)
 
ACS is joined to domain A.
 
My question is AD integration (Not LDAP) supported between 2 domains in different forests?

View 1 Replies View Related

Cisco AAA/Identity/Nac :: Integration ACS 5.2 With Other Device (sandvine)

Sep 18, 2012

I have a ACS version 5.2 (TACACS) where I require equipment integrated with Sandvine, I currently looking information and very little to manage the integration of ACS with these teams Sandvine.
 
I have an information on the provider Sandvine with a guide to the case where only states:

TACACS + server
On a TACACS + server, each user entry must allow the service "Sandvine". Within this
service, the attribute-value pairs Following can exist:
• An attribute named "Sandvine-Group" of type string.

[Code]......

View 4 Replies View Related

Cisco AAA/Identity/Nac :: ACS 1121 Log Report Showing Wrong Time?

Jun 20, 2012

I have an ACS Server 5.1 which is used to authenticate my cisco and non-cisco devices. however when I take report on my authentications, the time shown in the report is wrong. However, when I take my mouse pointer to the report , the correct time is highlighted.

View 4 Replies View Related

Cisco AAA/Identity/Nac :: Upgrade CSACS-1121 From ACS 5.2 To 5.4 - Application Initializing?

May 29, 2013

We upgraded a CSACS-1121 from ACS 5.2 to ACS 5.4 with CLI Application upgrade ACS_5.4.0.46.0a.tar.gz FTP After ACS reboot, services never start... After 15 hours, we always get same message:
 
ACS/admin# show application status acs
Application initializing...
Status is not yet available.
Please check again in a minute.
 
We installed patch 5-4-0-46-2.tar.gpg but we got same issue for 2 hours ...What could I do?

View 4 Replies View Related

Cisco AAA/Identity/Nac :: ACS Memory Utilization Limit With CSACS 1121

Aug 21, 2012

We have 2 CSACS 1121 with Cisco ACS 5.2.0.26.10 The primary server manages 20000+ authentications per day. Its memory utilization increases everyday. It is now at 83% , there a limit?,What will happen when memory utilization reach this limit?,What can we do to purge memory utilization? (reboot, service restart.

View 11 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved