Cisco AAA/Identity/Nac :: ACS 1121 Running 5.2 - Edit Hosts File?

Apr 13, 2011

Is it possible to edit the hosts file on an ACS 1121 server running ACS 5.2? Our problem is we have a single domain with multiple domain controllers at different sites. So when the ACS server tries connecting to the domain it randomly picks a domain controller which it can't connect to thus causing it to fail.

View 5 Replies


ADVERTISEMENT

Servers :: Can't Edit Or Save File On A Network Drive

Sep 14, 2011

I cannot edit or save file on a network drive. When saving or editing it says it cannot save and gives a read only error. I have tried to create a new folder and place files within but I still get the same error over and over again. When I check out the read only tab it comes back again.

View 1 Replies View Related

Hosts File Disappearing?

Jun 7, 2011

We have a modified hosts file on each of the computers here at work. This way we can have multi servers, in multi locations that can all be used by everyone for email & our finance program.However, there is one user who the hosts file keeps disappearing. Over the last 2 days it has disappeared 3 times (at least).The user has ran the symantec corp antivirus (at least a couple of times). All risks found have been quarentined and deleted, ran again and nothing found. Also ran Malwarebytes, which was clean. And ran ComboFix.At this point the hosts file has been fixed after running ComboFix.

View 14 Replies View Related

Cisco Routers :: RV220W Blocks Hosts File?

Jun 16, 2012

anything I put into my hosts file, will not go through the Cisco RV220W router. This is part of the set up:
 
192.168.1.10 << RV220W
192.168.1. 15 << A client machine
192.168.1.99 << Internal DNS with forwarder to OpenDNS (208.67.222.222 & 208.67.220.220) + a laptop that's not on the internal network at all.
 
Now, the client machine and the laptop both have an entry in their hosts files:
174.156.12.81 insight.hello.com
 
From the laptop, I can both browse to insight.hello.com, and I can ping it in Xterm.

From the client machine (192.168.1.15) which is behind the Cisco Router/FW, I can ping insight.hello.com, but I can not browse to it. This is especially strange since the ping goes through the Router every bit as much as the http traffic does, so why is the router giving me a DNS error on that, but the ping goes through just fine?
 
The hosts file is supposed to supercede any other information from anywhere, so it out to not be a problem for the router either. Yet, it obviously is.
 
I have tried to disable the internal DNS server as well as OpenDNS and just run the ISP's DNS servers, but no change - I still get that blue DNS error screen from the CIsco router.
 
Above IP's & hosts are fictitious.
 
The hosts file doesn't get blocked in a sense, but what happens is that if you have "Content Filtering" checked - even without any rules - the router can not verify that 174.156.12.81 is in fact insight.hello.com in this case, since it doesn't exist in the public DNS system.
 
So, I unchecked Content Filtering and now it works as it should.

View 1 Replies View Related

Cisco AAA/Identity/Nac :: Use Acs 5.2 Recovery DVD To 1121 Acs 5.1?

May 31, 2013

It's impossible to use acs 5.2 recovery DVD to cisco 1121 acs 5.1?

View 7 Replies View Related

AAA/Identity/Nac :: Cisco ACS 1121 Integration With AD?

May 15, 2011

integrated the Cisco ACS 1121 with 5.1 and AD and been able to use multiple policies to permit or deny access to different NDG?  I am able to authenticate agains AD but I am having an issue with getting the policies to use the user memberOf attribute to set access levels. 

View 1 Replies View Related

Cisco AAA/Identity/Nac :: ACS 1121 With V5.0 PAK Lost

Jan 6, 2012

It has been more than a year since a customer bought a Cisco ACS 1121. It was unpacked then and the PAK is lost, no where to be found. Is there any way to retrive the lost PAK ?

View 19 Replies View Related

Cisco AAA/Identity/Nac :: Replacement Of ACS 1121

Jun 7, 2013

I have a clarification related with ACS 1121. Client needs a solution for ACS feature, instead of investing on ISE Base, is there any model exists as ACS appliance only. I believe ACS 1121 is going to be EOS and it says SNS 3415 is the replacement model .
 
What I am confused is , It is an ISE as well as ACS and there is separate licensing for ISE (as base and advanced). What should i do , if i need to select SNS 3415 as ACS appliance ? is it built in or should i need to add anything extra ?       

View 3 Replies View Related

Cisco AAA/Identity/Nac :: ACS 1121 Appliance Downgrade To 4.2.0.124

May 2, 2011

Newly shipped cisco  ACS appliance 1121 has been shipped with ACS version 5.0 , I need to downgrade to ACS version 4.2,0 , I could not see recovery CD or DVD for acs 4.2 along with shipment , Is ACS 1121 appliance is comptaible to acs 4.2.0 version ? .
 
My ACS BOM details
CSACS-1121-K9
ACS 1121 Appliance With  5.1 SW And Base license

[code]....

View 2 Replies View Related

Cisco AAA/Identity/Nac :: How To Configure LAN Teaming In ACS 1121

Mar 27, 2011

how to configure LAN teaming in Cisco ACS 1121. My requirement is to have virtual IP in the server with two physical IPs in the available 2 interface in the server.

View 1 Replies View Related

Cisco AAA/Identity/Nac :: ACS 1121 With 5.3 MIB For SNMP Monitoring

Mar 26, 2012

I am trying to add ACS 1121 (ver 5.3) to monitoring and seems that MIB are missing. Need MIB for this device which I can use in monitoring tool.

View 1 Replies View Related

Cisco AAA/Identity/Nac :: Monitoring ACS 1121 Via SNMP?

Aug 13, 2012

I have 5 installations of ACS appliances (ACS 1121 running ACS 5.3). Is there a way to monitor them via SNMP? The AD client keeps dying on one of them, and even with the newest patch it's not up. Also, i want to monitor them up/down, CPU, memory... basic network monitoring to make sure my devices are  healthy.
 
Any one know if that can be configured? I figured i'd ask here before opening a TAC.

View 2 Replies View Related

Cisco AAA/Identity/Nac :: CSACS-1121-K9 - Dual NIC

Aug 11, 2011

Is it possible to have Dual NIC on ACS v5.2 such as teaming or any else??
 
I am thinking of connecting the two NIC on the CSACS-1121-K9 appliance to two switches on the same network, but wondering if it will be possible or not.

View 1 Replies View Related

Cisco AAA/Identity/Nac :: Applying A Patch To ACS 1121

Jun 3, 2012

I have an issue with applying a patch to an ACS 1121 appliance running version 5.2.0.26. I have 5 units that needed updating and the first one is the unit with the problem. The subsequent ones updated with no issues.
 
When I do a show version the 5.2.0.26.10 does not show. When I try to do a reinstall I get back patch all ready exists. When I try to do an uninstall I get back patch does not exist.

Is there a command can wipe out patch 10, so I can start over? The CLI factory-reset only wipes the web configuration not the running-config or IOS.

View 7 Replies View Related

AAA/Identity/Nac :: 1121 - Add Secondary ACS Server 5.4?

May 29, 2013

My customer has an ACS 1121 version 5.4. Now we want to install a secondary ACS 1121.

View 2 Replies View Related

Cisco AAA/Identity/Nac :: ACS 1121 V 5.3 NTP Offset Increasing With Server In Same LAN

Oct 31, 2012

Im installing & configuring a new ACS 1121. Ive updated to version 5.3 with patch:This temporarily solves my Active Directory problem but i still would like to have the NTP server pointing to the same reference as the Active Directory.

View 1 Replies View Related

AAA/Identity/Nac :: Procedure To Migrate From ACS SE 4.0.1 (1112) To ACS SE 5.2 (1121)

Jan 11, 2012

I have to migrate two appliances ACS SE 1112 under 4.0.1 to new two appliances ACS SE 1121 under 5.2 version.I would like to clarify the procedure to do it by minimizing down time impact.I saw there are Migration Utility and Import Tool but do I need an Intermediate Windows Server to do this migration ?

View 1 Replies View Related

Cisco AAA/Identity/Nac :: ACS 1121 Log Report Showing Wrong Time?

Jun 20, 2012

I have an ACS Server 5.1 which is used to authenticate my cisco and non-cisco devices. however when I take report on my authentications, the time shown in the report is wrong. However, when I take my mouse pointer to the report , the correct time is highlighted.

View 4 Replies View Related

Cisco AAA/Identity/Nac :: Upgrade CSACS-1121 From ACS 5.2 To 5.4 - Application Initializing?

May 29, 2013

We upgraded a CSACS-1121 from ACS 5.2 to ACS 5.4 with CLI Application upgrade ACS_5.4.0.46.0a.tar.gz FTP After ACS reboot, services never start... After 15 hours, we always get same message:
 
ACS/admin# show application status acs
Application initializing...
Status is not yet available.
Please check again in a minute.
 
We installed patch 5-4-0-46-2.tar.gpg but we got same issue for 2 hours ...What could I do?

View 4 Replies View Related

Cisco AAA/Identity/Nac :: ACS Memory Utilization Limit With CSACS 1121

Aug 21, 2012

We have 2 CSACS 1121 with Cisco ACS 5.2.0.26.10 The primary server manages 20000+ authentications per day. Its memory utilization increases everyday. It is now at 83% , there a limit?,What will happen when memory utilization reach this limit?,What can we do to purge memory utilization? (reboot, service restart.

View 11 Replies View Related

Cisco AAA/Identity/Nac :: ACS 1121 / 5.3 - Remote Database Settings In Monitoring And Reporting

Mar 26, 2012

I am configuring new ACS 1121 appliance with version 5.3 and wanted to know how to configure Remote Database settings in ACS5.3 Is that necessary to configure that option ?
 
Also one more thing I can see that ACS 5.3 generates lots of logs is there any solution to reduce such logs. It seems many unuseful logs which are system related are getting logged into device which might no be good for memory requirements of device.

View 6 Replies View Related

Cisco AAA/Identity/Nac :: Account Lockout For Failed Attempts In ACS 1121 Version 5.1.0.44.6

Jun 4, 2011

I have ACS1121 running version 5.1.0.44.6 on my network environement , I need to enable account lock-out for internal user during failed attempt for more than 8 times , How to achieve this .   I could see account lock-out for administrator user account , not for internal user .

View 2 Replies View Related

Cisco AAA/Identity/Nac :: 1121 - Configuring ACS To Strip Domain From Request And Sending It To AD

Jul 24, 2011

We are currently evaluating a ACS 1121 running 5.2, we are trying to configure this to Authenticate eap-peap requests.

Our users will be using credentials in a username@example.com format, if the server sees a request using username@anotherrealm.com then it would forward the request to a external proxy radius server, if the server saw a request for our domain it would strip off the @example.com part and authenticate against AD.
 
Im finding it hard locating documentation to tell the server if a request comes from a NAS using username@example.com then strip @example.com and authenticate username against AD.

View 4 Replies View Related

Cisco AAA/Identity/Nac :: 1121 - Upgraded ACS / Clients Are Unable To Authenticate Older Appliance?

Apr 14, 2013

We have had an active ACS unit for many years now, and we've added a second one, both are 1121 Appliances.  The newer one came with 5.4, so we upgraded the older one to 5.4.
 
We setup replication between the two, with the newer one primary and the older one secondary.  Problem is, windows based clients are unable to authenticate to the older ACS appliance.  The only problem we can see is that it indicates that adclient is not running, under Monitoring & Troubleshooting, ACS Health Instance Summary.
 
So... been trying to figure out how to correct this, yet have been hard pressed to find a knowledgebase article that works.  So far, Cisco hasn't added my smartNet on the new box so I can get some support?

View 6 Replies View Related

AAA/Identity/Nac :: ACS 5.2 Import Internal Hosts?

May 17, 2011

Trying to use the "File Operations" option to import hosts into ACS.  I go through the wizard and click "Finish", the pop up goes blank and just hangs there.  No errors are generated. 

View 2 Replies View Related

Cisco AAA/Identity/Nac :: Maximum Internal Hosts Accounts On ACS 5.2?

Aug 27, 2011

Is there a maximum number of "Internal Hosts account" IDs that the local database in a ACS 5.2 can handle?

View 5 Replies View Related

Cisco :: Restore 5.2.148.0 Backup File On Different Server Running WCS?

Feb 10, 2011

If the hostnames are the same - can I restore the backup file from a wcs 5.2.148.0 instance on a different wcs instance running wcs 6.0.196.0?

View 1 Replies View Related

Cisco Switching/Routing :: C3750 - Running Configuration File

Aug 7, 2008

We have a bunch of switches that are running fine but the running-config file is missing and we can't save the config to the tftp server. IOS is c3550-ipbasek9-mz.122-37.SE1.  I've got lots of these switches running the same code that are just fine.

View 8 Replies View Related

AAA/Identity/Nac :: CSACS-1121-UP-K9 - Possible To Upgrade It Being Non Upgrade Part

Sep 10, 2012

Is it possible to upgrade the CSACS-1121-UP-K9 to be a non upgrade part? We were going to upgrade from a Windows 4.x to the above Appliance (version 5.x) but there is now a reason to keep the old Windows version running therefore we cannot give the new Appliance the old ACS's licenses?!So we should have (with hindsight) bought a fresh version of the ACS 5.x rather than an upgrade.

View 1 Replies View Related

Cisco AAA/Identity/Nac :: ACS 5 - DBPurge Is Not Running?

Feb 5, 2013

we have two ACS 5.0.4.46.1 and since a few weeks, it reports the following error:
        
I stopped and restarted ACS, reconfigured the repository, reconfigured the backup and so on. I even rebooted the ACS but it sill has this problem. I can see "Please contact TAC..." but I first wanted to ask the community.

View 7 Replies View Related

AAA/Identity/Nac :: NAC 4.9 CAS Inband With ASA Running 8.6

Oct 3, 2012

We have a workng NAC 4.9.0 environment. When looking through the documentaiton areas I only see setup info for VPN concentrator and NAC in band. Are there setup examples with an ASA runnign newer code (8.6). The second piece is that I have some confusion as to the CAS setup. If it is in-band should it be done as a Real-IP gateway? Or can i get away with L2 in-band? We come off of the ASA inside interface to the trusted side of the CAS. The untrusted side of the CAS goes to the LAN. The CAM is 4 routed hops away.

View 4 Replies View Related

Cisco AAA/Identity/Nac :: ACS 1120 Running 5.0.0.21 RADIUS Timeout With WLC 7.0?

Aug 29, 2011

i am configuring a Cisco Secure ACS 1120 appliance running ACS 5.0.0.21 to handle RADIUS request from a Cisco WLC 5508 appliance running version 7.0.116.0.these devices have open communication on all ports - no firewalls or ACL'sthey have successful ping communication The following statements illustrate some but not all the debugging I have done to ensure each device functions as it should in isolation.Using a simple windows RADIUS server (radserv2.exe) instead of the Cisco ACS  This works and the WLC gets RADIUS response from my makeshift serverUsing a simple windows EAP client to query the ACS using RADIUS protocol   this works and the ACS processes the RADIUS request and sends a responsePlaced a wireshark client on the network to inspect timeout. Wireshark logs the packet from the WLC to the ACS using port 1812 but doesn't see any packet  responses from the ACS At the moment I have the WLC accepting the association from the wireless client and sending the RADIUS (PEAP, EAP-FAST or EAP-TLS) request to the ACS, the WLC receives no response and generates a timeout message and disassociates from the client. note this is not a reject or similar message, the ACS simple does not even process the packet. i.e. there is absolutely nothing in the ACS logs to suggest it even received a radius packet from the WLC. In summary the WLC and the ACS successfully function independently but they do not communicate via radius.

View 3 Replies View Related

Cisco AAA/Identity/Nac :: Running An Inventory For ACS 1113 Appliance

Mar 23, 2011

I want to gather an inventory of all devices  that shows the AAA client name, IP addresses, authentication method and key under my Network Configuration on my ACS appliance. Is there a report to run in it that will shows this, or is something that has to be done manually?

View 1 Replies View Related







Copyrights 2005-15 www.BigResource.com, All rights reserved