Forum Discussion
TACACS configuration on F5 LTM
- Thiyagu_343098Jun 16, 2018Nimbostratus
As per the document it is been mentioned as "In the Secret field, type the password for access to the primary RADIUS server"
Could you please help me to know the mentioned password is the password of the TACACS server or the TACACS server key?
Regards, Thiyagu
- AceDawg1Jun 16, 2018Nimbostratus
You would enter the key associated with the F5 client configured on the tacacs server. In other words, the tacacs server should have an entry for the F5 device — enter the key for this entry.
- Thiyagu_343098Jun 18, 2018Nimbostratus
Hello All, One more quick query, Does TACACS configuration auto sync with the other device in the group?
If so If I disable auto sync will it help to test the TACACS in the standby LTM and upon successfull tesitng synchronize with the active LTM in the traffic-gorup?
Regards, Thiyagu
- Edward_Gastón_SJun 18, 2018Nimbostratus
Hello Thiyagu,
you can create the password, when you create the group in the TACACs with the devices that you need access, this password key, you have that put in the F5 and associate the integration, but before, you need configure one route management for tmsh, is importan the configuration of the route, if you not put this route the traffic of the connection with the tacacs traveling for the interfaces of traffic.
- AceDawg1Jun 18, 2018Nimbostratus
Yes. When you sync the devices, the tacacs configuration will be copied over.
To build on Edward Sinche's comment, be sure to add a route that forces tacacs requests through the management port:
tmsh create sys management-route tacacs network 10.20.0.100/255.255.255.255 gateway 10.0.0.1
- Replace 10.20.0.100 with the IP address(es) of the tacacs server(s)
- Replace 10.0.0.1 with the gateway of the management interface for the f5
- Thiyagu_343098Jun 18, 2018Nimbostratus
Thanks a lot guys for all your support. today I have successfully tested first Load blancer with TACACS.
you guys rock.
Regards, Thiyagu
Recent Discussions
Related Content
* Getting Started on DevCentral
* Community Guidelines
* Community Terms of Use / EULA
* Community Ranking Explained
* Community Resources
* Contact the DevCentral Team
* Update MFA on account.f5.com