Technical Forum
Ask questions. Discover Answers.
cancel
Showing results for 
Search instead for 
Did you mean: 
Custom Alert Banner

Cisco ISE - TACACS and F5 deployment

sonu_kumar4
Altostratus
Altostratus

Hello Guys,

 

Greetings.

 

I have 2 ISE PSN nodes (Device admin nodes) which are behind F5 LTM in logical inline mode now I want that all my TACACS request should route to the F5 VS IP which then perform a further load-balance to the actual PSN server. so can you please suggest me the configuration for this task , I have checked the Cisco and F5 deployment guide but it's totally cover Radius part not TACACS.

 

Thank You.

 

7 REPLIES 7

sonu_kumar4
Altostratus
Altostratus

Guys can you please help me on this ?

 

DavidZhou
Altostratus
Altostratus

I followed the below diagram to set up on F5 , it is working

your link or image got lost, perhaps you can add it again?

DavidZhou
Altostratus
Altostratus

0691T000008sxFeQAI.png

awesome, thank you David

For those who have this working would you mind confirming the VS & Pool configuration options.  My configuration matches the diagram above with a basic setup but tacacs authentication is not working thru Cisco ISE.  TIA!

can u check (with tcpdump on the ISE side f.e.) that communications basically happen?