Security

last person joined: yesterday 

Forum to discuss Enterprise security using HPE Aruba Networking NAC solutions (ClearPass), Introspect, VIA, 360 Security Exchange, Extensions, and Policy Enforcement Firewall (PEF).

ClearPass Insight with Tacacs

This thread has been viewed 1 times
  • 1.  ClearPass Insight with Tacacs

    Posted Dec 15, 2017 01:39 AM

    Hi All

     

    We are going to deploy a CPPM to manage the AAA for the network devices with Tacacs, however after sometime we realise that the reporting in Insight is not friendly for Tacacs, at least in version 6.6;

     

    1. The Insight dashboard doesn't take Tacacs authentication into account, all counters in the top of the page are 0 and shows "No data available" for all diagrams like Authentication Trend. Radius authentication, in the other hand, are displayed as expected

     

    2. Some devices don't have command authorization implemented for Tacacs, so the command details are not included in Access Tracker, only in Accounting. However Insight doesn't have the Accounting database, so we cannot generate report for the commands issued by users. Even for the Tacacs authentication report, we cannot filter by username in the report.

     

    Anyone is facing the same issue? What are the recommended way to deal with the reporting?

     

    Thanks and Regards,

     

    Leo