cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1837
Views
0
Helpful
1
Replies

Config CSACS for a router with multiple links to the same LAN

jasonhumes
Level 1
Level 1

I've got a router on which I've set up AAA authen to a CSACS server. Now, in the CSACS when I'm setting up the AAA client IP address, key, etc...what IP should I use? The router has two different IPs (For redundancy) which connect to the LAN on which the CSACS sits. How should I set up the CSACS with that router? Can I set up a loopback on the router and have CSACS use that IP? Thanks.

Jason Humesx

1 Reply 1

tepatel
Cisco Employee
Cisco Employee

Configure a loopback interface on a router and setup a router to source the aaa packets from that loopback ip address using "ip radius source-interface " command, same using tacacs too. . That way you can have always up/up interface ignoring two eth ip address to talk to aaa server. Configure loopback's ip address as NAS ip in AAA.