cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1418
Views
0
Helpful
3
Replies

ip tacacs source-interface : can vlan1 be used?

mchockalingam
Level 1
Level 1

Hi All,

I have a distribution box with multiple SVIs. In order to hop from one box to another box, I have added an ACL for the vty lines. The ACL has

access-list 10 permit 10.1.0.0 0.0.255.255

access-list 10 deny any log

But I do not have loopback interface configured on all devices yet. I tried using "ip tacacs source-interface vlan1" and "ip ssh source-interface vlan1" and it did not work. Does it only work with loopbacks?

3 Replies 3

walleyewiz
Level 1
Level 1

yes, i have used it on many switches.

From a current 3750:

ip tacacs source-interface Vlan1

MEENA

I agree with Brad that the source-interface command is not restricted to loopback interfaces. It will use whatever interface you specify (as long as that interface is available). I have used the source-interface command with a variety of interfaces and it works. If you tried it before and it did not work then there must be some other explanation of the problem (perhaps the server not configured to match the address that you specified, perhaps a key mismatch, perhaps something else).

HTH

Rick

HTH

Rick

John Lukes
Level 1
Level 1

Check the configuration for "vlan1" and post it here.

Is the name "vlan1" or "Vlan1" 

Review Cisco Networking products for a $25 gift card