- CheckMates
- :
- Products
- :
- Quantum
- :
- Security Gateways
- :
- Tacacs Server Grouping
- Subscribe to RSS Feed
- Mark Topic as New
- Mark Topic as Read
- Float this Topic for Current User
- Bookmark
- Subscribe
- Mute
- Printer Friendly Page
Are you a member of CheckMates?
×- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Tacacs Server Grouping
Hi All
I want to integrate ISE with checkpoint for Device Administration and I have two TACACS servers. However when I configure the TACACS server in the checkpoint I can only associate the user only with one of the two TACACS servers is there any way two associate to associate or grouping the TACACS servers, there is an option for RADIUS Group in the object creation but I Can't get ?
Accepted Solutions
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hey,
Not sure why are you confused, as the on TACACS settings you can add multiple servers - see below - and Radius we use for SmartConsole access...
So where exactly you see the limitation ?
Thank you,
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Hey,
Not sure why are you confused, as the on TACACS settings you can add multiple servers - see below - and Radius we use for SmartConsole access...
So where exactly you see the limitation ?
Thank you,
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Thanks @Sorin_Gogean I was trying on the smartconsole that's why I didn't get it Thanks a lot.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
The option for TACACS groups was added in R81.10, I believe.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
Yes it was added in R81.10 and working very well.
This is to be clear in SmartConsle for administrator authentication and now you can use a tacacs group as authentication instead of single tacacs servers.
