Compatible Nexus 5020 5.0.2.N2.1 with Tac_plus?

Friends,

I have a problem with the Nexus switches, is impossible authenticate from tac_plus. In another company, I have configured ACS to authenticate the switches of Nexus and OK

The configuration of my tac_plus is:

user = {gian

Login = cleartext prueba

Member = nexus

Group = {nexus

by default the service allowed =

Service = {shell

#double - quote - values = yes

#shell: roles = "------"network-admin\»"

Cisco-av-pair * shell: roles = "network-admin".

The configuration of the switch is:

RADIUS-server host xx.xx.xx.xx touch 7 'xxxxx '.
AAA server Ganymede group + AAA_TACACS_SERVER
Server xx.xx.xx.xx
source-mgmt0 interface

Group AAA authentication login AAA_TACACS_SERVER default
AAA authorization commands by default local group AAA_TACACS_SERVER
Default accounting AAA group AAA_TACACS_SERVER

Any idea?.

Thank you

Hello

You use roles you don't need the permission of config command. If please remove this line and try again.

Tags: Cisco Security

Similar Questions

  • EEM with Nexus 5020?

    Hello

    I wonder if it is possible to use the cmdlets to EEM with the Nexus 5000? Based on http://www.cisco.com/en/US/docs/switches/datacenter/nexus5000/sw/fundamentals/513_n2_1/b_Cisco_Nexus_5000_Series_NX-OS_Fundamentals_Configuration_Guide_Release_513_N21.pdf of this document, it should be possible, but my 5020 does not know the command "event manager applet. Is there a feature that I need to activate it first?

    Best regards

    Pille

    EEM is supported only on the N7K right now.  While I pushed to get it on the 5K, I don't have any ETA.

  • What Linux RHEL (Linux Red Hat Enterprise Server 6.7) compatible for oracle database 11.2.0.4 with grid Infrastructure?

    Compatible Linux RHEL (Linux Red Hat Enterprise Server 6.7) for oracle database 11.2.0.4 with grid Infrastructure.

    Hi all

    We plan to patch Linux Redhat Enterprise Server (6.4 and 6.5) to 6.7.

    I tried Searchin' on support of oracle for the compatibility of the database for Linux patches, but not able to find accurate information.

    can anyone share the ID document or information related to it.

    If OS RHEL 6 update 4 to 6-7 update patch

    (1) is it compatible

    (2) bugs or problems reported

    (3) in addition to the binary link again than the DBA to perform any other

    Thank you

    Hello

    6.7 RHEL is certified for the database 11.2.0.3 or newer. In other words, it is certified for RHEL 6.7 11.2.0.4

    Certification information for the Oracle database on Linux x 86-64 (Doc ID 1304727.1)

    -Jonathan Rolland

  • AAA with Nexus problem

    Hi there

    I try to get the config directly on our nexus switches to use our local ACS server for authorization and authentication command. I want of course to yuse to a local user-database if the connection to the central server of ACS fails. But I can't properly syntax--some please see what I'm doing wrong here--is here - I set it on my nexus 5020:

    I have defined a Ganymede group + named TACSRV

    AAA server Ganymede group + TACSRV

    Group AAA authentication login TACSRV default

    AAA authentication local console connection

    Group AAA authorization commands by default TACSRV

    AAA authentication login error-enable

    how it should look to first ask in TACSRV and if not properly the local database servers?

    best regards /ti

    Hello

    You need to add at the end of each authentication and authorization, set the "local".

    Like this:

    Group AAA authentication login default local TACSRV
    AAA config-commands to default local group TACSRV permissions
    AAA authorization commands by default local group TACSRV

    Dan

  • Nexus 5000 operating as a standalone FibreChannel Switch

    Hello world

    Does anyone know if the Nexus 5000 can be used as a standalone FibreChannel Switch? Which means I don't want to run NPV on this and connect it up to a MDS or a different type of switch FibreChannel. I'm looking to create a 'Pod' scenario. Where a few servers and a storage Bay would hang the 5K on a login F_Ports is local FLOGI DB and be able to use zoning and traffic went immediately from the 5K, etc etc? I know that 5 K is not a full blown fibre channel switch such that it has some limitations, but again I think to a "Pod" as scenario.

    If the script above won't work for some reason any using CF can achieve us with FCoE CNAs on servers & storage Bay?

    Finally, FC domain IDS how 5 K can cause?

    Sorry for the questions. I'm new to SAN switching at this stage.

    Thank you all!

    Yes, it works even FC code NX - OS like a switch MDS switch.

    You connect FC HBAS, ports SAN or FCoE CNAs to Nexus.

    However, you need to license storage.

    Nexus 5010 supports up to 8 4 G FC or FC G 6 8 ports with the expansion module

    Nexus 5020 supports up to 16 4 G FC or 12 8 G FC ports with the expansion module

    Nexus 5548UP supports up to ports FC 32 4 / 8G without the expansion module

    Nexus 5548UP supports up to 48 4 FC ports / 8G with the expansion module

    Nexus 5596UP supports up to 48 4 FC ports / 8G without the expansion module

    Nexus 5596UP supports up to 96 4 FC ports / 8G with the expansion module

  • Nightly HTML5 is compatible? And if not, can watch us forward to a compatible version in the future?

    With a few videos, I get a warning that I need a HTML5 compatible browser - and I can just not look with 43.0a1 every night

    Every night,RudyvanM said

    43.0A1 every night

    Every night is one of the four main channels of Firefox development.

    Release of < beta < Aurora (developer edition) < every night

    The versions start developing on channel every night and move/merge to channel following as a version is available. On channel every night can be more than a work in progress.

    Every night and Aurora gets updates almost every day because of check-ins each of these days. Every night is for more testers and developers vs browser every day.

    Its plausible that something related html5 does not work in your version of Nightly or website does not recognize Firefox 43.0a1 and may be looking for say 40,0 Release.

  • I can't open Firefox, but Safari opens fine. Tried to download Firefox, but the new version is not compatible with the iMAC G5

    I use Firefox for several years on my G5 iMAC, running MAC OS 10.5.8. This morning, Firefox does not open. Tried to open it from the icon in the Applications folder, but does not always. Safari opens without difficulty. Tried to download Firefox again, thinking a file might have been corrupted, but new version is not compatible with my hardware of desktop computers. I find a compatible version of Firefox? My NAV for MAC security software is not interfering.

    For a non-official Firefox 4 compatible version (TenFourFox) which works on Mac PowerPC with OS X 10.4.11 or OS X 10.5.8, you can consult:

    Firefox 3.6.x (Mac OS X 10.4 and later versions) can be found here:

  • Satellite A665 - 12K - what battery is compatible?

    _ * Wrote the following text has been translated by machine translation.*_

    Hi, I have a notebook * Toshiba Satellite A665 - 12 K *.
    Today, * utility Toshiba PC [email protected] monitor * displays a message indicating that the battery is in poor condition and it is recommended to replace it. I want to buy a * high capacity battery *, but I don't know which compatible model (and more the same as now) with my laptop. Can you please what approach of large capacity model?

    At the moment the battery is * PA3817U-1BRS * (6 cells, 10.8 v, 4200mAh, Size/WxHxD:205x50.5x20.5mm).

    Hello

    As far as I know you can use a
    -battery 6 cells PA3818U-1BRS
    -12 PA3819U-1BRS battery cells

    Welcome them

  • Satellite L350-172 - slow HDD after set SATA mode for compatible

    SERVUS of Germany

    Yesterday, I bought a Satellite L350-172 and I installed Win XP pro on the HARD drive
    So far so good.
    Driver found on the Web site and so on that I spend in Bios the SATA Mode on "compatible" because the AHCI mode does not work with XP.

    In my view, disk access is slow and windows hang up so that the closing

    Does anyone know how to solve the problem?

    Thank you

    Hello

    It is not unusual that your HARD drive runs slower after the change of mode of AHCI SATA compatible.
    You have disabled the SATA feature and so you cannot use the benefits of SATA.

    And I must say that you are wrong buddy if you say that the AHCI mode does not work with XP.

    You can use the SATA in Win XP, but you must include the SATA driver first.
    Intel Storage Manager contains the SATA driver, and you could include using the nLite software.

    Good bye

  • What should I do if I receive-no not found any device compatible direct3d?

    I'm trying to play a hidden object game. When I start the game, I get the message "Could not find device compatible direct3d" I have a Toshiba 1905-S303 with xp. How can I solve this please? Thank you

    Hello

    Game in which you try to read?

    You can follow the steps in this link & check if the problem persists:

    direct3D acceleration is not available in Windows 7

    (As shown in the link applies to Windows XP)

    Note: Using third-party software, including hardware drivers can cause serious problems that may prevent your computer from starting properly. Microsoft cannot guarantee that problems resulting from the use of third-party software can be solved. Software using third party is at your own risk.

    Hope the helps of information.

  • Microsoft Outlook is not compatible with my email. How can I change this to a different email address. It opens and gives me the email that it is not compatible.

    Microsoft Outlook is not compatible with my email.  How can I change this to a different email address.  It opens and gives me the email that it is not compatible.

    I need to put up with my hotmail account.

    Hi CarolBehrendt,

    • What e-mail program other than Microsoft outlook use?

    You must validate your application in the Windows Live community to know how to configure the hotmail account in the e-mail program you want to use.

    http://www.windowslivehelp.com/

  • SWR10 implementation on the nexus 5

    Hello, I just bought a new smartband SWR10 and I ve tried to connect with my LG Nexus 5.
    When I connect it with the NFC, he begins to update and eventually get a disconnection from it was close.

    THE SOLUTION IS
    to download an older version of the app ´´smart connect´´ if you cannot for any reason expect sony to update the app or just your phone android 5.0 GOLD 4.4.4 downgrade

  • HP1280 driver for windows 7 - is a printer available or compatible?

    HP1280 driver for windows 7 - is a printer available or compatible?

    I have had no luck with 1220 series.

    Hi Cchriso,

    You should be able to use the Windows Vista drivers for the 1280. I don't know if you have 32 bit or 64 bit, then here is a link to both:

    Drivers Vista 32 bits for the HP Deskjet 1280

    Drivers Vista 64 bit for the HP Deskjet 1280

    For more information, see this thread:

    http://h30434.www3.HP.com/T5/other-printing-questions/Windows-7-64bit-driver-for-HP-1280-DeskJet/TD-p/567129/page/2

  • PrintMaster Gold version 15 is compatible with Windows 7

    PrintMaster Gold version 15 is compatible with Windows 7?

    Both versions 17 and 18 are not compatible, so it is unlikely version 15 works with Windows 7:
    http://www.Microsoft.com/Windows/compatibility/Windows-7/en-us/search.aspx?l=en-us&type=software&s=PrintMaster

    (Version 15 is not at all)

    The only version reported as compatible is PrintMaster version 18.01:
    http://www.Microsoft.com/Windows/compatibility/Windows-7/en-us/details.aspx?type=software&p=PrintMaster%20Platinum&v=Encore&UID=18&l=en&pf=0&PI=4&s=PrintMaster&OS=64-bit

    PrintMaster Web site:
    http://www.broderbund.com/p-137-PrintMaster-Platinum-181.aspx

    You can try the version 15 in compatibility mode:

    Troubleshoot Compatibility

    This can help with some (but not all the) programs/drivers:

    (1) uninstall the program, if it is already installed. Then when install you / reinstall instead of double click on the Setup file, right click and select 'resolve compatibility issues.

    (2) then click on 'Try recommended settings' and in the next window, click on "Start the Program" to install it.

    (3) after he set up see if it works properly. Note: some programs may not be able to run in Windows 7.

    More information on how to make older programs in this version of Windows:

    http://Windows.Microsoft.com/en-us/Windows7/make-older-programs-run-in-this-version-of-Windows

  • Nexus F2e series modules

    Can someone tell me what is the difference between F2 and new F2e?  All I can find is supportive effect. Isn't it?

    The biggest complaint (and Gotcha) when people bought the N7K-F248XP-25 (aka standard F2) is an inability of the online map to work with F1 and M1/M2 card.  The F2 has be in it's own little VDC.   No member of Cisco would have admitted that it was due to a technical fault (or disaster).

    Thus the F2e is born.  Whatever the standard F2 can do, the F2e can do as well.  And the F2e can work with M1/M2.  "And when that happens (as indicated on the data sheet)" when you deploy the Module Cisco Nexus 7000 F2e-series fiber has VCC with the Cisco Nexus 7000 M Series modules, the Nexus 7000 F2e - series Cisco Fiber Module will run in mode Layer 2 only, delegating all capabilities of layer 3 for the Cisco Nexus 7000 M-modules of the series present in the VDC. The initial version of the software does not support this feature. »

    The F2e comes in two "forms": 1/10BaseTx 48-ports or SFP / SFP +.

    As the "F2", the F2e still won't be able to support the OTV (integrating F2 series Modules in a Cisco Nexus 7000 Series System).

    Due to the release of the new map of F2e expect Cisco to announce (within 6 months) at the end of sale of the standard map of F2.  (My own opinion, read below for refutation of the management team Cisco Nexus 7000 Production.)

    I don't know what Cisco will do to customers who bought the standard F2 by mistake.  Cisco quietly will allow them to trade or swap for F2e?  Only people (like Jerry) in Cisco will know.

    Post edited by: Leo Laohoo

Maybe you are looking for

  • Time Capsule, don't automatically back BONES upward?

    I've scoured the web looking for instructions about backing up my operating system. Everything I found was how to use Time Capsule to restore files and BONES. How to get the operating system on the backup drive? Is it automatic or are there steps I w

  • 37 of Firefox crashes when you use the browser of peacekeeper test

    Hi guys, I've updated my browser Firefox 37 and it crashes on me whenever I use the browser of peacekeeper test. I had no problem using the website in the past. Whenever I update my browser I have run the test to compare previous results as well as c

  • Adapter USB - C compatibility series?

    Can someone confirm compatibility USB adapters series knows well with other Macs and a 12 '' MacBook? I'm not (USB) universal serial bus but a cable series to 9600, 8, N, 1 network connections and ports console industrial equipment. I use a TRENDnet

  • Sound of Ipad when I entered all the data

    Hello I watched a video on Facebook on my Ipad. Later, when I press 'Like' I sound interference. When I put in my access code or close the Ipad I get this sound interference. When I try to write a letter all the keys I press produces a noise of grati

  • I would like the encoder of data as well as the duration of treatment in a table

    Hello I want to draw my value encoder of data as well as the duration of treatment simultaneously in a table by getting data in real time. Please help me with solutions or ideas.