LAN Routing
1752587 Members
4815 Online
108788 Solutions
New Discussion юеВ

I am trying integrate AAA with this HPE FlexFabric 5950 Switch Series HWTACACS to CISCO ISE TACACS +

 
EricLEE1
Visitor

I am trying integrate AAA with this HPE FlexFabric 5950 Switch Series HWTACACS to CISCO ISE TACACS +

I am trying integrate AAA with this HPE FlexFabric 5950 Switch Series HWTACACS to CISCO ISE TACACS +

Can anyone help?

3 REPLIES 3
vladi0782
Advisor

Re: I am trying integrate AAA with this HPE FlexFabric 5950 Switch Series HWTACACS to CISCO ISE TACA

hwtacacs scheme tacacs-ec
primary authentication 10.20.20.231 key simple XXXXXXXXXX       ----------IP CISCO ISE PRIMARY
primary accounting 10.20.20.231 key simple XXXXXXXXXX
primary authorization 10.20.20.231 key simple XXXXXXXXXX
secondary authentication 10.33.20.231 key simple XXXXXXXXXX  ----------IP CISCO ISE SECONDARY
secondary accounting 10.33.20.231 key simple XXXXXXXXXX
secondary authorization 10.33.20.231 key simple XXXXXXXXXX
user-name-format without-domain
nas-ip 10.20.11.130  ----------IP SWITCH
#
domain cppm-ec
authentication login hwtacacs-scheme tacacs-ec local
authorization login hwtacacs-scheme tacacs-ec local
accounting login hwtacacs-scheme tacacs-ec local
#
domain default enable cppm-ec

#
user-interface vty 0 15
authentication-mode scheme
user-role network-admin
user-role network-operator
idle-timeout 0 0
protocol inbound ssh
#
ssh server enable
public-key local create rsa

Be happy for this moment. This moment is your life
EricLEE1
Visitor

Re: I am trying integrate AAA with this HPE FlexFabric 5950 Switch Series HWTACACS to CISCO ISE TACA

Thx for the help

I had try all those command it work.
Current I face a issue on the Cisco ise.
The log of the live tacacs give me a error msg of 13017 received TACACS+ packet from unknow network device or aaa client
srini_c
Occasional Advisor

Re: I am trying integrate AAA with this HPE FlexFabric 5950 Switch Series HWTACACS to CISCO ISE TACA

The above configuration is fine and looks good.  Looks like something at Tacacs+ is causing this problem.. better to open a Tac with Cisco.

I am a HPE Employee