Cisco Prime NCS integration with ACS 5.1

Hello,
We've an issue with authorization on NCS system. NCS successfully integrated witch ACS, but there is a problem with one user. All users have equivalent rights under root. There is shell profile with all possible tasks (exported from NCS server) configured on ACS. All users exept this one (unlucky one:)) authorizes successfully.  In  ACS logs, authentification and authorization status for this user is passed and all attributes (policy, profile, AV-pairs e.t.c.) is the same as for another users. This 'unlucky' user gets a following message:
There is surely no browser or network issue. Tried from different PCs with same result. There is no any local info related to this username on the NCS server. When i change one charecter in the username on his ACS account, everything works well. What could be a possible reason of this behaivour?  Thanks!
Our ACS v
Version 5.1.0.44.X
And NCS
Version : 1.1.2.X

this question should be moved to the Security > AAA forums as this sounds more like an ACS issue than NCS.
HTH,
Steve
Please remember to rate useful posts, and mark questions as answered

Similar Messages

  • Integration of CISCO PRIME 1.3 with ACS 5.2

    Hi
    we are trying to integrate the CISCO PRIME 1.3 with ACS5.2 .We have configured the attribute for admin users in ACS shell profile.
    virtual-domain0=ROOT-DOMAIN
    total task is 159
    After then configured a rule in default device admin.
    Default Device Admin> Authorization>
    Shell profile is choosen
    Command set is full acess.
    but not able to get the access of PI .

    Please check the below link which may be helpful for you:
    Link-1
    http://www.cisco.com/en/US/docs/wireless/prime_infrastructure/1.2/configuration/guide/ctrlcfg.html

  • Cisco WCS/NCS integration with airmagnet

    Hi,
    I used Airmagnet to preform a site survey and i want to import the maps into the WCS/NCS how can i do that?
    Thanks,
    Omer Shtivi

    Hi,
    Thank you for your replay.
    As far as i know there is a way to export the plan from the Airmagnet and into the WCS/NCS.
    there is an option in the Airmagnet Cisco Prime NCS/WCS export.
    when i export the file it save it as a zip file, when i open it there is three folders inside, csvfiles images and xmlDir, when i import the the XML file i get the error:
    XML Import: 'AMPlanner.xml' has an unsupported Mime Type\n\nMime Type sent by  Browser 'text/xml'\n\nPossible causes/workarounds\n1. Check File  [Associations/Types/Extensions]\n2. Ensure appropriate application launches  file\n3. Try a different browser\n4. If File [Associations/Types/Extensions] are  correct try closing the browser and relaunch\n\nMaps Import: Supported file  format mime types are \n\n'application/gzip-compressed',  'multipart/gzip-compressed', 'multipart/x-zip-compressed',  'application/x-gzip-compressed', 'application/zip', 'multipart/zip',  'application/x-zip-compressed', 'multipart/x-gzip', 'application/x-zip',  'application/gzip', 'application/x-gzip', 'multipart/x-gzip-compressed',  'multipart/gzip', 'multipart/x-zip'\n\n

  • Cisco Security Manager integration with ACS

    Has anybody got this working yet.
    I have tried but as yet have been unsucessful in registering csm with the ACS server.
    I am following the the instructions however, nothing seems to work all i get is failed to registar.
    Any help would be appreciated
    Regards
    Jason

    Check out this link...
    http://www.cisco.com/en/US/products/ps6498/prod_troubleshooting_guide_chapter09186a00806e23e3.html

  • Issue with backup NCS via NFS (Cisco Prime NCS 1.2.0)

    Hello,
    Does someone have issue with backup NCS via externally mounted location (NFS)?
    I have Cisco Prime NCS 1.2.0 and tried backup it to external resources, but I have issue with my free space:
    NCS/admin# backup ncs repository backup_nfs
    % Creating backup with timestamped filename: ncs-130131-0534.tar.gpg
    INFO : Cannot configure the backup directory size settings as the free space available is less than the current database size.
    You do not have enough disk space available in your repository to complete this backup.
    DB size is 25 GB
    Available size is 12 GB
    Please refer to the command reference guide for NCS and look at the /backup-staging-url/ command reference to setup the backup repository on an externally mounted location
      Stage 5 of 7: Building backup file ...
      -- complete.
      Stage 6 of 7: Encrypting backup file ...
      -- complete.
      Stage 7 of 7: Transferring backup file ...
      -- complete.
    I have tried to add additional space and use command backup-staging-url (my configuration: backup-staging-url nfs://server2008:/nfs), but it didn't help me.
    NFS share works perfect. I have checked it via NFS repository:
    repository backup_nfs
      url nfs://server2008:/nfs
    +++++++++++++++++++++++++++++++++++++++
    NCS/admin# show repository backup_nfs
    NCS-130130-1135.tar.gpg
    NCS-130130-1137.tar.gpg
    NCS-130130-1157.tar.gpg
    NCS-130130-1158.tar.gpg
    test-130130-1210.tar.gz
    Everytime when I try create backup I receive error message "You do not have enough disk space available in your repository to complete this backup".
    Does someone know how can I backup NCS system?
    Thank you

    How much space is availabe on that NFS mount point? It looks like to me from the error message that there is only 12 GB.... 
    The backup-staging-url is just for a space used to stage the backup before it is written-----

  • Cisco Prime LMS appliance Compatibilty with Cisco Prime NCS

    Hi,
    Is it possible if we can install Cisco Prime LMS 4.2 in the appliance which is inbuilt with Cisco Prime  NCS .
    We have PILMS42-1.5K-U license available with us.
    Rgds,
    Kamal

    One can install either LMS 4.2 or NCS on the a physical (software on PRIME-NCS-APL-K9 hardware) or virtual appliance (software installed on customer-provided VM).
    The two products (NCS and LMS) cannot coexist on a given appliance instance. This is due to change in the future as LMS and NCS merge under the Cisco Prime Infrastructure 2.0 release but for now they are distinct and separate products with a common approach and similar look and feel but requiring separate servers, whether physical or virtual.
    Please refer to the ordering and licensing guide here.

  • LMS PRIME 4.2 integrating with ACS 4.2

    Hello,
    i would like to integrate new lms prime 4.2 with acs.4.2 . .. !!
    is there document or user guide for this version of lms?
    Thanks in advance.
    Marwan

    IN LMS 4.2 there is nothing which is known as Integration (like LMS 3.x), since it added feature RBAC.
    Now ACS can just be used as PAM to have ciscoworks authenticated for Tacacs+ or Radius. After the auth is done, you should have a authorization set in LMS locally for user, else it will be given a default HELP DESK access.
    For more details check :
    Authentication Using Login Modules - Overview
    -Thanks

  • Cisco Prime NCS 1.3 Licensing issue

    Hello,
    I am installing Cisco prime NCS x 2 servers. I downloaded the licenses which are ordered allong with the devices as follows.
    Product Name                : L-PI12-LF-50-LIC
        Product Description         : L-PI12-LF-50-LIC:Prime Infrastructure 1.2 - Lifecycle - 50 Device Lic PAK
        Product Qty                 : 1
        UDI                        : PID: PRIME-NCS-APL-K9
    The issue is, the NCS appliance was not started properly and then I used the CD which came along with the server (NCS 1.3). Now my system is up and running but it is NCS 1.3 and when i upload the licenses, it shows that the UID is not matching with the system. Is this because the licenses are issued for NCS 1.2 and my system runs on 1.3? If so, what do you suggest, do i need to download NCS 1.2, install it, add the license and then upgrade to 1.3?
    Thanks for your advise,
    Regards
    Jay

    Prime Infrastructure has a support forum at:
    https://supportforums.cisco.com/community/netpro/network-infrastructure/network-management
    Please post this to that forum to reach PI experts.
    Regards

  • Cisco Prime NCS 1.3

    I am running Cisco Prime NCS 1.3 and I have two questions that I hope someone can help me out with. 
    Question 1). Is it possible to forward the Rogue Device Logs back to our SIEM server? If so how?
    Question 2). How do I setup the Mail Server Configuration? The part I am stuck on the is the Primary SMTP server.  For the username and password don't know what username and password I should use. Should I use the account I am logged into NCS prime ?
    Thanks for any help or input.
    Weiss

    Weiss,
    Re your first question. Prime itself cannot forward syslogs messages it receives. You may need to setup your wireless controller to use a secondary syslog server as your SIEM server.
    Re the second, username and password is optional and only used when your mail server does not allow unauthenticated users from relaying mail.
    If it allows that, you can leave those fields blank.
    If it does require authentication, you should have a service account created on the smtp server for use by Prime when sending outgoing mail.

  • Cisco Prime NCS Recovery

    Hi,
    A Cisco Prime NCS physical appliance has been shipped with version NCS 1.1
    Then it has been upgraded to:
    1) ncs_patch-1.1.0.58-upgrade-12.tar.gz
    2) PI-upgrade-bundle-1.3.0.20.tar.gz
    Our customer have got only 1.2 licenses.  How can we downgrade the appliance to 1.2 ?
    Or how can we re-install 1.1 or 1.2,   for both versions we did not find the iso's to download.
    Thanks in advance

    Hello,
    What is the Current  verison of NCS  ,you are using ?
    AFAIk, you can Installed PI 1.3 directly as PI 1.2 is not available for download.
    Conatct the License Team and they will re-host the license for you.
    you can downlaod the iso file from the below link:
    http://software.cisco.com/download/release.html?mdfid=284652876&flowid=38562&softwareid=284272932&release=1.3&relind=AVAILABLE&rellifecycle=&reltype=latest
    Note:Upgrade from Cisco Prime Network Control System 1.1.2.12 or 1.1.3.2 to Cisco Prime Infrastructure 1.3.0.20 is not supported.
    Thanks-
    Afroz
    [Do rate the useful post]
    ****Ratings Encourages Contributors ****

  • Cisco Prime NCS appliance & license

    Hi all,
    I'm looking for getting a Cisco prime NCS appliance (PRIME-NCS-APL-K9). I'm a little bit confused regarding to the license scheme:
    1. Does the appliance has any license coming with it or we need to order the license separately?
    2. If I have an WLC 5508 (license support 12 APs) & 12 3500 APs, then number of devices counted will be 1 (WLC) or 12 (APs) or 13 (WLC + APs) ?
    Thanks for the help,

    Cisco Prime Infrastructure for the  first time you may access the lifecycle and assurance features using the  built-in evaluation license that is available by default. The default evaluation  license is valid for 60 days for 100 devices and 150 interfaces. You will need  to purchase the base license and the corresponding feature license before the  evaluation license expires. Cisco Prime Infrastructure 1.2 can be ordered using  the standard Cisco® ordering tools at http://www.cisco.com/go/ordering. More information about getting the  license files can be found in the Cisco Prime Infrastructure 1.2 Ordering and  Licensing Guide

  • Cisco Prime NCS v1.1 Eval Download

    Hello,
    I've been trying to download the evaluation of Cisco Prime NCS v1.1 from the eval page located at the below address so I could, well, evaluate it.
    https://cisco.mediuscorp.com/market/networkers/productView.se.work?/nxt/rcrs/proieidentity/=19841
    But I've been getting corrupt downloads and can't extract the .OVA file.  I've tried this on a few computers and 2 different OSs, but to no success.
    Am I doing something wrong?
    Thank you in advance and sorry if this is the wrong forum to ask this question.

    @wireless.wlc
    I installed it on a Cisco UCS server running vSphere 4.1 (ESXi).  The template wants to make it thick provision, but for testing purposes I just made it thin provision.  After only adding maybe... 20 switches, 18 APs and 1 WLC it takes up just shy of 40 GB.
    If you try to install on a 50GB hard drive or a datastore that's less than 200GB available, it will probably just give you a warning.  But I'm not 100% sure since this is being deployed from from an OVA template.
    I'll install it again on a datastore with only 100GB to test and see if it works that way.

  • How to choose Cisco Prime NCS

    Dear Cisco Team,
    I would like to know what are the main facts to choose Cisco Prime NCS.
    And how many kind of monitoring system are there in Cisco.
    Best Regards,
    Thet Htar

    Hi Thet,
    Cisco Prime Infrastructure simplifies the management of wireless and wired networks. It offers Day 0 and 1 provisioning, as well as Day N assurance from the branch to the data center. We call it One Management. With this single view and point of control, you can reap the benefits of One Management across both network and compute.
    Prime Infrastructure enables you to configure and monitor one or more controllers, switches and associated access points. Prime Infrastructure includes the same configuration, performance monitoring, security, fault management, and accounting options used at the controller level and adds a graphical view of multiple controllers and managed access points.
    Read the below link  for more detail::
    http://www.cisco.com/c/en/us/td/docs/wireless/prime_infrastructure/1-2/configuration/guide/pi_12_cg/ovr.html
    You can download it from here and use it under evaluation period for testing::
    https://software.cisco.com/download/release.html?mdfid=286236028&flowid=72882&softwareid=284272932&release=2.2&relind=AVAILABLE&rellifecycle=&reltype=latest
    Thanks-
    Afroz
    ***Ratings Encourages Contributors ****

  • Difference between Cisco Prime Infrastructure and Cisco Prime NCS

    Dear All,
    I am currenctly confused in choosing what type of Cisco Prime.
    1.Which one should I choose? should I order Cisco Prime NCS or directly purchase Cisco Prime Infrastructure (since Cisco Prime Infrastructure has the feature of NCS)?
    2, Why does Cisco not just  remove the Cisco Prime NCS ordering Part Number since Cisco Prime Infrastructure already cover the NCS?
    Please advice me

    Hortono,
    I started to write a long and lengthy msg about my experience with this, but instead, let me direct you to the horses mouth.  There have been weekly webinars in regards to Cisco Prime (many differnt products under this headline) including Infrastructure.  I believe the Cisco PI is actually scheduled for Thursdays, so hopefully you'll look at this in time to catch it and ask your questions from the gurus.
    https://ciscosales.webex.com/ciscosales/j.php?J=200462944&PW=NMzhhNjM5OGU3
    Looks like this may be the last week, catch it if you can.

  • Difference between cisco prime NCS and cisco WCS

    hello
    i have a question. I am just started with testing cisco prime ncs
    i have worked with cisco WCS
    now i was wondering wat the difference is between these two
    can someone please explain it.
    thanks allot

    They are both very similiar in functionality.  The major difference is that NCS offers a basic switch management front end and allows you to see your wired clients just as you would your wireless.  Other then that, the I've found the latest version of NCS to run quite a bit smoother and faster then my WCS install of several years, slicker graphics.  I would recommend using NCS in Chrome for the best view.

Maybe you are looking for

  • Need help with recovering data from a truecrypt HDD

    I have done something stupid, I have run fdisk on my truecrypt hdd by mistake, and created 2 new partition. the 1st one on 67mb and the 2sd for the rest of the hdd. Can someone plz help me with restoring the data? I am not really sure there to begin.

  • Audio Tracks not showing in itunes.

    Dear All After transferring audio tracks to itunes library I am manually dragging them to my ipod shuffle and the songs are shown in the shuffle but when I am deleting the tracks from the itunes library then nothing is shown in the ipod shuffle folde

  • No cursor in Windows 8 mail on Helix

    For some reason, I don't see any cursor while typing on WIndows 8 mail client. The cursor shows up fine in other applications. Without the cursor it is difficult to see where I am typing! Is this a Windows 8 issue or some weirdness with Helix ?

  • Problem while using a methid or class in ABAP code.

    Hi, I want to fetch the personalization data for a user from SU01. I guess there is method called get_data of class CL_PERS_ADMIN which I can use to fetch the data. How can I use this in my custom program. I directly used like this: LOOP at I_KEYROLE

  • Some reports are not displayed -- JInitiator 1.3.17 to JRE 1.6.43

    We have our Medical Suite developed using Oracle Forms 10gR1(9.0.4) version.As we came to know that JInitiator is no more supported from Oracle and it has many problems Windows 7 64 bit esp.., with IE (9.0) recently we have migrated the Client PC's f