1. If ACS local database not found, ACS will attempted to authenticated with external database ( if configured ), and then created that user in ACS local database if authenticated succcess. Can we disable the auto create user function?
2. If user changed password in external database, can the ACS sync password with external database automatically or ACS always check the password to external database?
1) check out ACS v4.0. Pretty sure it doesnt switch off auto account creation, but... does have options for purging stale accounts.
2) ACS always uses the external database.... with one exception. Say you configure something that resulted in an MSCHAP authentication for an RSA token user. If the external DB doesnt support the required protocol ACS will revert to using the internal DB.
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...