Cisco AAA/Identity/Nac :: Adding Accounts On ACS 4.2 Using SNMP?
Apr 10, 2013
I'm using ACS 4.2 and was just wondering if it's possible to add user accounts to it by using snmpset? If so, any documentation on what needs to be done? I have the SNMP running on it and get information from the ACS using snmpget.
View 2 Replies
ADVERTISEMENT
Jul 7, 2011
I want to set it up so that when you log into any of the ACS 5.2 servers you have to use your AD credentials to log in and define what access you have. Is this possible? If so, how can this be set up?
View 1 Replies
View Related
Jun 3, 2012
Have set up a pair of ACS 5.3 servers and have set up device administration authentication be passed through to an RSA server via RADIUS. All works great.
What we want to do is go a step further and set the system up so that ACS Administrators also have to authenticate to the ACS system by RSA via RADIUS (the same as the Device Authentication we've set up) for ACS administration tasks.
Looking at the options available in the ACS Administration setup (administrator accounts etc) there doesn't seem to be an option to authenticate via another method apart from a local administrator account on the ACS.
Is it possible to do this?
View 1 Replies
View Related
Jan 29, 2013
I intend to create ACS local account from file. What is maximum of accounts can be in ACS 4.2?
View 1 Replies
View Related
Aug 27, 2011
Is there a maximum number of "Internal Hosts account" IDs that the local database in a ACS 5.2 can handle?
View 5 Replies
View Related
Dec 5, 2011
Can I authenticate users/administrators managing ACS5.3 via GUI and CLI against Microsoft AD. I think I heard it from someone from Cisco when a lot of improvements were introduced in ACS5.3 that I can do it. Doesn't seem to be available still
View 3 Replies
View Related
Nov 22, 2012
is it possible to get SNMP v3 on a Cisco ACS ?
View 1 Replies
View Related
Dec 27, 2010
I have not used the ACS5.1 yet so watch out for the easy questions
1) Is it possible to generate report for the users who are inactive for say last 30 days? Customer is looking to audit these users to see if they really need access to any device.
2) Are there any known issues while assigning the priviligaes level to users. In current implementation of this customer users are always logged into priv 1 though they are assigning the priv level of 5. I understand with ACS 4.x we can enable the exec process and assign the priv under user/group policy. What are the configurations that customer might be possiby missing in this case?
3) Is there any SNMP or other notification available in ACS 5.1 where admin can be notified at the time a particulat set of user logs in.
View 2 Replies
View Related
Feb 27, 2012
Is it possible to track failed login attempts to ACS instances (both on CLI and web GUI) by snmp? unfortunately i haven't found such option in Monitoring and Reports > Alarms > Thresholds >
View 2 Replies
View Related
Mar 26, 2012
I am trying to add ACS 1121 (ver 5.3) to monitoring and seems that MIB are missing. Need MIB for this device which I can use in monitoring tool.
View 1 Replies
View Related
Aug 13, 2012
I have 5 installations of ACS appliances (ACS 1121 running ACS 5.3). Is there a way to monitor them via SNMP? The AD client keeps dying on one of them, and even with the newest patch it's not up. Also, i want to monitor them up/down, CPU, memory... basic network monitoring to make sure my devices are healthy.
Any one know if that can be configured? I figured i'd ask here before opening a TAC.
View 2 Replies
View Related
May 23, 2012
how to add an snmp server ip and community in the ACS 3.2 appliance .
View 3 Replies
View Related
Jan 28, 2013
Does ACS v4.2 support the addition of the Nexus switches? We have a few new Nexus devices that have been added to ACS, but cannot be accessed successfully. A msg re: role based authentication is received. Do I have to do something special in ACS to support this?
Nexus 5596 v5.1(3)N2(1)
View 4 Replies
View Related
Jul 6, 2011
I have a pair of managers in HA mode and a pair of servers in HA mode. The solution is working in OOB Virtual Gateway. When i add the server in the manager, which IP address must i use, the service IP address or the physical Ip address.I'm running 4.8.2
View 2 Replies
View Related
Mar 16, 2011
I have a Cisco ACS 5.2 and have set it up as a RADIUS server. I was wondering if there is a way to add and update users automatically? We have a large number of users > 1000 that need to be added into the system and I don't want to do this manually. These users also update their passwords on a regular basis so I would need a script that would update the users automatically without any user intervention.
View 4 Replies
View Related
Aug 9, 2011
I am trying add custom attributes for Juniper Netscreen TACACS+ authentication to a v5.2 ACS. The advice is to add it to the group as follows:
ervice = netscreen {
vsys = root
privilege = read-write
} I know how to add this to a version v4.x ACS
However, I do not know how to apply this to the custom attribiutes to a v5.x ACS?do I add the vsys and privilege attribute seperately or together? What should be the attribute name? netscreen? Should it be mandatory?
View 4 Replies
View Related
Jun 11, 2011
I try to configure in both Clean Access Manager and Switch 3560E-24Ps on SNMP Version 2 protocol but I can't make it working together (For CAM and Switch 3560G-48Ps I can do that). [code]
View 3 Replies
View Related
Dec 18, 2011
I can�t seem to login to any accounts on the internet (e.g. mail accounts and such). Other than that I don�t have any real problems, except that my internet connection is considerably slower as well. But I can browse the web as usual�
The problem is that whenever I try to log into any place the screen just freezes and gets �non responding� and so I have to close it down. It doesn�t matter which browser I use, I have the same problem anyhow.
[code]....
View 2 Replies
View Related
Feb 20, 2012
could i create new guest accounts via CLI? i know that via GUI with lobby embassador account i can create them. I have WLC 5508 (7.0.116).
View 7 Replies
View Related
Jun 23, 2011
I am having trouble accessing my Halifax bank accounts online.I can log in, but I cannot access any of my accounts. I have reported this problem to Halifax they have issued me with instructions to check my set up, but this hasn't worked.
View 3 Replies
View Related
Jun 6, 2011
How do I setup remote login that would allow 3 or 4 people to login to the same computer.Each person would have their own Windows User Account name, with different privileges.I don't know what software could do this. The computer being connected to would be Windows 7, and there is no special network equipment besides a consumer router.
View 11 Replies
View Related
Jun 6, 2011
Each person would have their own Windows User Account name, with differentprivileges.I don't know what software could do this.The computer being connected to would be Windows 7, and there is no special network equipment besides a consumer router.This is a very small business and keeping costs under control is important
View 9 Replies
View Related
Jul 17, 2012
I have the RV220W and we are mainly using PPTP for VPN access. I can not add more than 9 PPTP VPN user acounts. When I go to add a tenth account the interface just hangs and stops responding. I can delete a user and then add another user and this works fine. I can also add other types of VPN users.
View 4 Replies
View Related
Aug 15, 2011
I am currently running a guest wireless network using 4404 controllers on the wireless side and a 4402 as an anchor controller, all running 7.0.98.0 and all is working fine. Accounts being created via the WCS lobby admin and applied to the 4402.The question I have is, is there any way of restricting the use of an account to 1 device at a time. I am currently seeing evidence of password sharing and my boss would like to make sure that everyone who use the system has their own credentials.
View 1 Replies
View Related
Jun 12, 2011
So what we do when we get new laptops, we "prime" it by connecting to the lan via a cable, name the machine and join the domain. This way it automatically gets the certificate and is a domain member. After logging on at least once via a cable, we can then disconnect it and join the wireless network.
During a routine audit, they suggest also using MAC address filtering. I think this is overkill and an administrative nightmare. To manage MAC address filtering on the 5508 and then also manage the domain accounts is unnecessary. Also down the road we want to offer a segregated public hotspot (webauth), and I'm not sure if MAC address filtering would affect that or not.
I've read that MAC address filtering is pretty much useless, because it's so easy to change your mac address even in Windows device manager. I know I was able to do it as a test.
is MAC address filtering worth the hassle to implement and manage? Or is our current layered security approach enough?
View 3 Replies
View Related
Jun 13, 2011
(WLC 4400) which enables employees to browse to a custom made webpage, where they can create an account for company vistors to access the internet. It's important for the employees not use any login credentials, they arrive on a webpage where they specify the login & password which the vistor will enter to browse the internet. Is there any good link to documention about this topic?
View 3 Replies
View Related
Sep 9, 2011
We recently switched from Centennial aircard to Verizon aircard (USB760) for our laptop. We have two user accounts on our windows 7 pc. With Centennial we could switch between user accounts without closing sierra wireless manager but when I switch to another user now, a message comes up saying vzaccess manager running in another account and we cannot use the internet until we have shut it down in the account it is running in - which is a pain. I have tried right clicking vzaccess manager in all programs and it does not have a share option. I also went to properties under vzaccess manager and found a setting to share and set it up but it still will not share
View 2 Replies
View Related
Nov 6, 2011
All my gmail accounts open normally to the first page, but the mouse cursor just highlights whatever I hit. It will not open to the relevant messages or any other action.The sign out function works, so I can go to my other accounts, but the same problem persists.It had been working fine for several years.All the accounts are fully functional when I use my ipod or go to another desktop.
View 2 Replies
View Related
Mar 7, 2013
How do i create and manage 40 user accounts on a windows 7 PC.
View 1 Replies
View Related
Jun 6, 2011
How do I setup remote login that would allow 3 or 4 people to login to the same computer. Each person would have their own Windows User Account name, with different privileges.I don't know what software could do this. The computer being connected to would be Windows 7, and there is no special network equipment besides a consumer router.his is a very small business and keeping costs under control is important.
View 6 Replies
View Related
Mar 7, 2013
how do i create and manage 40 user accounts on a windows 7 PC.
View 1 Replies
View Related
Jan 7, 2013
Currently the guest wireless users are maintained by WCS 7.0.172.0. I'm having a project to set up another 5508WLC in one location to replace the WLC in use in different location. My concern is regarding the guest user accounts. Can I use the feature of "Save Guest Accounts on Device" in WCS to save all the guest accounts on another WLC? I tried this feature and I got the message of "Successfully saved Guest users to the following respective controller(s) where they were applied". I don't know if it is because there is currently only one WLC in the WCS or the account can only be saved on the original controller where it was created.
View 1 Replies
View Related
May 21, 2013
I am in the process of upgrading a client's firewalls from 5520s to 5525-Xs. I have 2 independent firewalls that are merging into a single firewall. Both of the source ones have a TON of user accounts defined for remote user VPN, is there any way to move these user accounts with passwords in tact?? The goal is not to have to tell the 250+ users that they need to reset their passwords at once.
View 2 Replies
View Related