cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
487
Views
0
Helpful
4
Replies

Duplicate configuration from one 4.2 SE to another?

js88888888
Level 1
Level 1

Hello,

I am configuring two of these from scratch, is there a way to dump the config from one to another so that they are duplicates (but not same IP, etc).

thanks!

4 Replies 4

ansalaza
Level 1
Level 1

What you have described is possible, but not the "proper way".

Backup ACS1 and restore it into ACS2.

ACS Backup & ACS System Restore

http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2/user/guide/SCBasic.html#wp222373

-Correct the local "AAA Server" IP address under the Network Configuration > NDG if enabled...

-Change the Proxy Distribution Table to point to the proper ACS.

http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2/user/guide/NetCfg.html#wp343008

If you would like to keep them both running as failover mode:

Note: In ACS failover mode would be consider one active Server receiving the request from all AAA Clients, which are configured for both ACS Servers (but using only the first Server in their AAA Server priority list). The other Server would also be active, but waiting for any requests from the AAA Client.

In the case of trying to setup the above, you could build both servers and configure replication from ACS1 to ACS2.

ACS Internal Database Replication:

http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_solution_engine/4.2/installation/guide/solution_engine/instalap.html

Thank you Ansalaza.

sahmedshahcsd
Level 1
Level 1

Configuring replication between two ACS will look two servers almost similar in configurations and user databases after successful replication with different IP's running in different modes such as primary and secondary ACS.

Replication can be configured in ACS Internal Database Replication option under System Configuration.

Hope this helps

Ahmed

So, if I configure one ACS SE at one site to server its local clients. Then configure a 2nd SE at another site to service those local clients, then set up each others as replication partners, the configs will pretty much be identical anyway?

thanks!

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: