Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements
Webcast-Catalyst9k
New Member

Disable ACS/TACACS account after 14 days of inactivity

Is it possible to configure a group or user in Cisco ACS local database to disable accounts after a certain amount of inactivity on that account?

For example if you have someone that has not logged in and been authenticated in 15 days, to have that account disabled?

Accounts that point to Active Directory as an external database is no problem, but we have outside people that are configured in ACS local database and they have access to network resources. We would like to disable their accounts after a certain amount of time.

Is that possible within ACS?

1 REPLY

Re: Disable ACS/TACACS account after 14 days of inactivity

Wilson,

Unfortunately that is not possible in acs but it is a good feature to have.

As of now all you can set is "Disable account if" Date exceeds: xx.xx.xxxx

Please post all ACS related issues in AAA forum.

Regards,

~JG

Please rate helpful posts

285
Views
0
Helpful
1
Replies
CreatePlease to create content