Hi,
All gateways are in R81.10 with JHF 95 or JHF 110, also I've a mix of maestro and traditional clusters.
We're using TACACS+ to authenticate users by console via ssh and gaia via https.
We configured the roles TACP-0 with a few features in read-only and some custom commands and TACP-15 with all features in read-write.
On my TACACS+ server, I noticed 2 attempts in a row, coming from the gateway with a difference of 6s or less, the gateway is trying to authenticate on both servers, that result in 4 failed authentications.
Our password policy on AD, block the user with 3 failed attemtps.
is it expected to gateway try authenticate the user twice? Is there any configuration that I can do or is better to open a case with TAC?