Hey #NetEng bubble, quick question.
We're considering exchanging AAA #TACACS for #LDAP (via Windows AD) on our #Cisco #NXOS & #ACI devices. Just simple user authentication, no authorization or accounting. Are there any draw backs or (bad) experiences we should know about? TIA π
#neteng #tacacs #ldap #cisco #nxos #ACI
@ghostinthenet
If you want to have some real fun in IOS XE, try using AAA tacacs with actual FQDN names intead of ips to define the tacacs servers. the IOS XE device won't even look up the IP of the tac server even with DNS configured. I have had a case open for like 4 mo. now and it's moved to "the developers". TAC just keeps sending me an email ever 2-3 days saything the developers haven't responded yet. #cisco #iosxe #aaa #tacacs
It kind of wonders what if any #qa testing cisco does at all.
#cisco #iosxe #aaa #tacacs #qa