I'm setting up a new TACACS server and would like to use a wildcard ip address in the client configuration rather than enter all 242 devices (or import them in). Is there a reason why I shouldn't do this?
If you use the wildcard then your server will treat every source that sends it traffic on the correct port as a valid client. From a security perspective that seems to me to be a pretty big hole in your security posture.
HTH
Rick
HTH
Rick
Getting Started
Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: