11-17-2006 07:35 AM - edited 03-10-2019 02:50 PM
Hi,
I am trying to use a ACS appliance for switch TACACS+ authen. I'm getting a key mismatch, however I don't actually remember setting a key for TACACS on the ACS appliance. How do I reset / find out where this is set??
Thanks.
Solved! Go to Solution.
11-17-2006 08:53 AM
1. ACS side:
- Login to the ACS via web browser
- On ACS main menu, check the switch configuration status (called AAA Client) under "Network Configuration - AAA Client".
- Check the switch details, and check the stated secret key. You may re-enter the same key or define new key (without extra space or characters).
- Compare or use this key in the switch, which is configured under "tacacs-server" parameter.
- Save the config
2. Switch
- Login to the switch CLI (console/telnet/ssh)
- Scroll down to the 'tacacs-server key' configuration line.
- Delete the exisitng key (normally hash/encrypted). Enter the same key - without extra space or characters.
- Make sue you're pointing to the correct ACS Server/IP
- Do not save the config yet.Test the tacacs+/AAA authentication to verify that both ACS server and the switch used correct/identical key.
Hope this helps. Pls rate all useful post(s)
AK
11-17-2006 08:53 AM
1. ACS side:
- Login to the ACS via web browser
- On ACS main menu, check the switch configuration status (called AAA Client) under "Network Configuration - AAA Client".
- Check the switch details, and check the stated secret key. You may re-enter the same key or define new key (without extra space or characters).
- Compare or use this key in the switch, which is configured under "tacacs-server" parameter.
- Save the config
2. Switch
- Login to the switch CLI (console/telnet/ssh)
- Scroll down to the 'tacacs-server key' configuration line.
- Delete the exisitng key (normally hash/encrypted). Enter the same key - without extra space or characters.
- Make sue you're pointing to the correct ACS Server/IP
- Do not save the config yet.Test the tacacs+/AAA authentication to verify that both ACS server and the switch used correct/identical key.
Hope this helps. Pls rate all useful post(s)
AK
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide