Welcome to Infoblox NetMRI Community Sign in | Join | Help
in Search

Authentication/authorization with Cisco ACS 5.0

Last post 09-22-2010 5:31 PM by bfflusek. 3 replies.
Page 1 of 1 (4 items)
Sort Posts: Previous Next
  • 06-17-2010 4:42 PM

    • bfflusek
    • Top 75 Contributor
      Male
    • Joined on 11-20-2009
    • Las Vegas, Nevada

    Authentication/authorization with Cisco ACS 5.0

    Hello,

    I wondered if anyone out there had any pointers or tips for getting NetMRI configured to do authentication/authorization with Cisco ACS 5.0.  The things that I see in the help with NetMRI all seem geared toward ACS 4.x or earlier and while I think I know where to do the stuff there, I'm just not seeing what I need to do in ACS 5.0.  I would be happy with RADIUS or TACACS+.

    Any help would be greatly appreciated.

    TIA,

    Bill 

    Bill Flusek
    Senior Network Analyst
    Nevada System of Higher Education
    Las Vegas, NV
    Filed under: , ,
  • 06-18-2010 9:08 PM In reply to

    • bfflusek
    • Top 75 Contributor
      Male
    • Joined on 11-20-2009
    • Las Vegas, Nevada

    Re: Authentication/authorization with Cisco ACS 5.0

     As an addendum to this, I have gotten this to where it is passing authentication when I test it in NetMRI but I cannot login when I try.  The test comes back from both of my servers reporting access accepted and reporting the full list of roles (SysAdmin, GroupAdmin, IssueAdmin, ConfigRead, ConfigReport, ConfigAdmin, ReadOnly, EventView, EventAdmin and FindIT).  But when I log out and try to log in with that ID and password, the system responds by saying that I have entered an invalid username or password.  I'm not sure what that means but it seems like it should work.

    Any thoughts out there?

    Bill

    Bill Flusek
    Senior Network Analyst
    Nevada System of Higher Education
    Las Vegas, NV
  • 09-22-2010 11:36 AM In reply to

    Re: Authentication/authorization with Cisco ACS 5.0

     Hey Bill,

    I am having problems getting the userRoles setup in the ACS 5.0. Would you mind assisting me in what and where you entered the roles? Also with the username and password error, is the same username setup in the NetMRI? I know that even though the username is in the ACS, the username also needs to be in the NetMRI. Hope that works for you.

  • 09-22-2010 5:31 PM In reply to

    • bfflusek
    • Top 75 Contributor
      Male
    • Joined on 11-20-2009
    • Las Vegas, Nevada

    Re: Authentication/authorization with Cisco ACS 5.0

    Hello,

    Well, what I found out from Netcordia at the time was that they didn't really work with ACS to do role checking and so I have users defined in NetMRI with their roles defined there as well.  I'm just using ACS 5.0 to do authentication of the username and then the rest of it is all done by the NetMRI box.  (I had built all of the roles on ACS 5.0 system but I does not seem to be doing anything and I just tested that again recently.)

    I hope that helps.


    Bill

    Bill Flusek
    Senior Network Analyst
    Nevada System of Higher Education
    Las Vegas, NV
Page 1 of 1 (4 items)