cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
878
Views
0
Helpful
2
Replies

VRF and TACACS or RADIUS for ACS

arnis
Level 1
Level 1

We are using Cisco ACS Tacacs for Managment user authen into a cat6500 box, cant seem to find a way for that to work after moving every thing into vrf's

Seem like TACACS on this platform is not VRF aware.

Does any one know if RADIUS can be made VRF aware or is there any workaround for this issue ?

2 Replies 2

d.calton
Level 1
Level 1

Maybe I don't understand, but why would a server application be VRF-aware? VRF is a routing issue. Perhaps the real issue is connectivity between your management user's VRF network, the TACACS server VRF network and the 6500 management interface? If so, the issue would be bridging the VRF instances in some way, such as static or PBR?

Also, is is possible to implement 802.1Q on your NIC? At the server level, it isn't so much of a VRF issue as it is a VLAN. HTH,

mheusinger
Level 10
Level 10

Hi,

to my knowledge and according to the feature navigator the Cat6500 is not among the boxes supporting "per vrf aaa".

The feature was introduced in 12.3(7)T

Regards, Martin