- CheckMates
- :
- Products
- :
- Quantum
- :
- Management
- :
- Re: Tacacs+ SmartDshboard authentication
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Tacacs+ SmartDshboard authentication
Hello,
Not work tacacs authentication in SmartDshboard. But on this managment applince ssh and WebUI tacacs authentication is work. In log "Administrator failed to log in: Wrong Password"
Tacacs server is Cisco ISE.
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
We solve.
When authenticating through Web, SSH, we have one request - one reply, as usual
.
When use tacacs authentification for WebUI or SSH checkpoint send only one request to tacacs server. Its default configuration tacacs server on Cisco ISE.
But, when use tacacs authentification for SmartDashboard, sends three request (1- Action=Login, 2-Username, 3- Password ) .
Need configure Cisco ISE tacacs policy condition to “match NetworkAccess username”.
Discribe bug :
https😕/bst.cloudapps.cisco.com/bugsearch/bug/CSCvm51754/?rfs=iqvred
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Have you created the appropriate administrator users in SmartConsole and configured them for TACACS authentication?
May be relevant also: https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solut...
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
We solve.
When authenticating through Web, SSH, we have one request - one reply, as usual
.
When use tacacs authentification for WebUI or SSH checkpoint send only one request to tacacs server. Its default configuration tacacs server on Cisco ISE.
But, when use tacacs authentification for SmartDashboard, sends three request (1- Action=Login, 2-Username, 3- Password ) .
Need configure Cisco ISE tacacs policy condition to “match NetworkAccess username”.
Discribe bug :
https😕/bst.cloudapps.cisco.com/bugsearch/bug/CSCvm51754/?rfs=iqvred
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
It's very helpful solution
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hey Fedor,
Is it possible to attach the screenshot of the CISCO ISE you have to do to make it works?
Thanks.
