Forum Discussion
ACS Support
Can anyone confirm if ACS 4.2 is supported with Big IP version 10.x
5 Replies
- What_Lies_Bene1
Cirrostratus
RADIUS and TACACS+ are both supported in TMOS v10 so you should be able to use ACS for remote user authentication.
- Cory_50405
Noctilucent
We used ACS 4.2 with v10.2.1 and 10.2.3 without issue. Getting it working can be a bit of a pain, but I'll offer a few key pointers:
-
Ensure you specify a Service Name of 'ppp' and Protocol Name 'ip' in your remote TACACS+ server configuration on the BIG-IP
-
Ensure your remote role name matches verbatim the group name within ACS (no spaces)
-
The attribute string that you set within your BIG-IP remote role needs to be defined as a custom attribute under your ACS group.
- PaulStonehewer_
Nimbostratus
Many thanks for your feedback. I will ensure the F5 engineers are aware.
-
- simon_84972
Nimbostratus
can help to provide any example for ACS configure for attribute?
- Cory_50405
Noctilucent
I no longer have access to an ACS 4.2 instance so I can't get any more specific than what I specified above.
Help guide the future of your DevCentral Community!
What tools do you use to collaborate? (1min - anonymous)Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com