cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
957
Views
0
Helpful
3
Replies

Registration CiscoWorks LMS 2.5.1 by TACACS ACS 4.0

Gazexport6k
Level 1
Level 1

We want to register working CW in TACACS ACS 4.0 with all CW application. The registration goes only with main CiscoWorks application and registration of all other applications fail. All CW devices are also in ACS. Where can be a problem?

1 Accepted Solution

Accepted Solutions

Joe Clarke
Cisco Employee
Cisco Employee

LMS 2.5.1 only supported ACS running on a Windows server. The ACS appliance was not supported. As for debugging integration, this can be quite tricky. Things that will make integration go more smoothly are temporarily disabling HTTPS on ACS and opening up all TCP ports from 1024 to 65535 for administration. You should also verify that you have configured a proper ACS administrator under Common Services > Server > Security > AAA Mode Setup. To verify this, go to Administration Control > USERNAME in ACS (where USERNAME is the admin user you have configured for ACS integration in Common Services). You must have ALL boxes checked on this page in ACS for integration to work properly.

If you still have problems with integration, I recommend you open a TAC service request so more debugging can be done.

View solution in original post

3 Replies 3

Joe Clarke
Cisco Employee
Cisco Employee

LMS 2.5.1 only supported ACS running on a Windows server. The ACS appliance was not supported. As for debugging integration, this can be quite tricky. Things that will make integration go more smoothly are temporarily disabling HTTPS on ACS and opening up all TCP ports from 1024 to 65535 for administration. You should also verify that you have configured a proper ACS administrator under Common Services > Server > Security > AAA Mode Setup. To verify this, go to Administration Control > USERNAME in ACS (where USERNAME is the admin user you have configured for ACS integration in Common Services). You must have ALL boxes checked on this page in ACS for integration to work properly.

If you still have problems with integration, I recommend you open a TAC service request so more debugging can be done.

1. ACS is running on Windows Server.

2. All TCP ports are open.

3. Administrator in AAA Mode Setup is the ACS administrator. And with this account we can register only CW and IPM appications, all other like DFM fail their registration on ACS.

Sorry my mistake. Not all TCP ports were opened for administration.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: