Cisco Works LMS 3.1 Integration with ACS v5.2
Hello Experts,
our customer has a working integration with the Cisco Works LMS 3.1 and an ACS v3.3 as it is described in this document:
http://www.cisco.com/en/US/prod/collateral/netmgtsw/ps6504/ps6528/ps2425/prod_white_paper0900aecd80613f62.html
Now we are changing the old ACS Servers to the new ACS v5.2 platform. Is it possible to integrate the LMS to the new ACS Server? We want to use a granular user access restriction for SuperAdmins, Hotline Users an so on...
Thanks,
Florian
Hi Florian,
actually the ACS 5.2 is not supported in CS 3.2
here is a list of the supported ACS servers under LMS 3.1
http://www.cisco.com/en/US/docs/net_mgmt/ciscoworks_common_services_software/3.2/user/guide/admin.html#wp865998
Similar Messages
-
LMS 3.2 integration with ACS 5.1
Hi
Is it
/* Style Definitions */
table.MsoNormalTable
{mso-style-name:"Table Normal";
mso-tstyle-rowband-size:0;
mso-tstyle-colband-size:0;
mso-style-noshow:yes;
mso-style-priority:99;
mso-style-qformat:yes;
mso-style-parent:"";
mso-padding-alt:0cm 5.4pt 0cm 5.4pt;
mso-para-margin-top:0cm;
mso-para-margin-right:0cm;
mso-para-margin-bottom:10.0pt;
mso-para-margin-left:0cm;
line-height:115%;
mso-pagination:widow-orphan;
font-size:11.0pt;
font-family:"Calibri","sans-serif";
mso-ascii-font-family:Calibri;
mso-ascii-theme-font:minor-latin;
mso-hansi-font-family:Calibri;
mso-hansi-theme-font:minor-latin;
mso-bidi-font-family:"Times New Roman";
mso-bidi-theme-font:minor-bidi;
mso-fareast-language:EN-US;}
possible to integrate LMS 3.2 with ACS 5.1? I know it works with ACS 4.X, but I can't get it to work with ACS 5.1.
Here is a link to how to do it with ACS 4.X:
http://www.cisco.com/en/US/prod/collateral/netmgtsw/ps6504/ps6528/ps2425/prod_white_paper0900aecd80613f62.html
Regards
Reidar/* Style Definitions */
table.MsoNormalTable
{mso-style-name:"Table Normal";
mso-tstyle-rowband-size:0;
mso-tstyle-colband-size:0;
mso-style-noshow:yes;
mso-style-priority:99;
mso-style-qformat:yes;
mso-style-parent:"";
mso-padding-alt:0cm 5.4pt 0cm 5.4pt;
mso-para-margin-top:0cm;
mso-para-margin-right:0cm;
mso-para-margin-bottom:10.0pt;
mso-para-margin-left:0cm;
line-height:115%;
mso-pagination:widow-orphan;
font-size:11.0pt;
font-family:"Calibri","sans-serif";
mso-ascii-font-family:Calibri;
mso-ascii-theme-font:minor-latin;
mso-fareast-font-family:"Times New Roman";
mso-fareast-theme-font:minor-fareast;
mso-hansi-font-family:Calibri;
mso-hansi-theme-font:minor-latin;
mso-bidi-font-family:"Times New Roman";
mso-bidi-theme-font:minor-bidi;}
Thanks Reidar.... hmm very strange. I really wish an expert would respond to this thread as it will help a lot of people who might be planning to deploy these versions and they can help put this matter to rest once and for all. Not sure why LMS 3.2 will not support ACS 5.1 and it might help to know when it will (updates etc). Kindly let me know if you get any further information. My deployment is so large that setting a local username and password on all the devices is not an option unfortunately ....... -
Cisco Works LMS R3.1 with ACS R5.1
I search on internet about the AAA integration between LMS R3.1 y ACS R5.1, and all the information that I found it's related to ACS R4.1. It's possible to integrate with ACS R5.1.
Regards and thanks in advanced
Luis MartinezNael,
Sorry to batter you, but I was trying to migrate my Cisco Works LMS R3.1 to R3.2 and from the support page of CISCO I just can donwload the following version LMS R3.2.1 (LMS R3.2 service pack 1). I tried to install that version but i got an error that saids "LMS R3.2.1 needs LMS R3.2 installed on the server"
Could you please tell me where can I download the complete and initial LMS R3.2.
Thanks in advanced for your kindly help.
Luis Martinez -
LMS PRIME 4.2 integrating with ACS 4.2
Hello,
i would like to integrate new lms prime 4.2 with acs.4.2 . .. !!
is there document or user guide for this version of lms?
Thanks in advance.
MarwanIN LMS 4.2 there is nothing which is known as Integration (like LMS 3.x), since it added feature RBAC.
Now ACS can just be used as PAM to have ciscoworks authenticated for Tacacs+ or Radius. After the auth is done, you should have a authorization set in LMS locally for user, else it will be given a default HELP DESK access.
For more details check :
Authentication Using Login Modules - Overview
-Thanks -
Cisco works LMS 3.0.1 does not archiever configuration for cisco 7201 router
Hi All,
We have Cisco works LMS 3.0.1 and it does not archiever configuration for cisco 7201 router.
Any help would be appriciated.
Thanks in advance
SamirHi,
*** Device Details for d0151-100 ***
Protocol ==> Unknown / Not Applicable
Selected Protocols with order ==> TFTP,SSH,HTTPS
Execution Result:
Unable to get results of job execution for device. Retry the job after increasing the job result wait time using the option:Resource Manager Essentials -> Admin -> Config Mgmt -> Archive Mgmt ->Fetch Settings
This is the error while doing syn archieve.
I am not sure about Rtr7000 version but we have latest Rtr7000.
Waiting for your kind reply.
Samir -
Hi,
I am using Cisco works LMS 3.1 with HUM 1.1.0. I am receiving thresold and job schedule mail alert from HUM.
It is showing error in JOB history “Not able to connect the mail server” while alerts from RME,IPM,CS,DFM are coming on mail.
I have Configured HUM just 3 days back and all others application had been configure 4 months back.
Please help.
Regards,
DJHi Clarke,
Thanks for response. Please see the attached HUM smtp error. I have tried the HUM JOB with sniffer to filter smtp port 25 traffic but nothing is reflecting
in sniffer when trying to send mail through HUM while DFM,RME IPM mail are showing in sniffer and we are getting mail as well.
I have upgraded HUM version from 1.1.0 to 1.1.2 but the error is same.
Regards,
Dinesh Joshi -
System Requeriments Cisco Works LMS 2.5
Hi
I need to know if the Cisco Works LMS 2.5 can be instaled in a Windows 2003 Server whith Service Pack 2 or i need to work whithout the SP2
Thank?sLMS 2.5.1 is supported with windows server 2003 SP1or later
http://www.cisco.com/en/US/products/sw/cscowork/ps2425/products_upgrade_guides_chapter09186a00805af1dc.html#wp1032750 -
Cisco Work (LMS 2.6) Device Configuration
Hi,
Can anyone tell me where is the default location of device configuration ( Running conf ) saved in Cisco Work (LMS 2.6) Server.
Thanks & Regds,
Lalitif you enable the so called shadow directory feature under: Admin -> Config Mgmt -> Archive Mgmt -> Archive Settings
then the defaut location is \CSCOpx\files\rme\dcma
Cheers,
Michel -
Hi All,
Our problem is, we have Cisco Works LMS 3.0.1. cannot archieve configuration for cisco 3000 series vpn concentrator.
Any help would be greatly appreciated.
Thanks in advance.
SamirMake sure you have filled out all of the HTTP/HTTPS credential data in DCR for these devices. RME will only use HTTPS to fetch VPN concentrator configurations.
-
Cisco works LMS 4.0 ,Apache HTTP Server CVE-2011-3192 Denial Of Service Vulnerability
Cisco works LMS 4.0 ,Apache HTTP Server CVE-2011-3192 Denial Of Service Vulnerability
This vulnerability has been fixed in release apache 2.2.20 and further corrected
in 2.2.21. You are advised to upgrade to version 2.2.21 (or newer) or the
legacy 2.0.65 release,
Can any one give the steps to upgrade the apache http server 2.2.10 to 2.2.21 in windows 2008 server?For the following PSIRT:
http://www.cisco.com/en/US/products/csa/cisco-sa-20110830-apache.html
Download the following patch "lms40-win-Oct2011-su1-0.zip" :
http://www.cisco.com/cisco/software/release.html?mdfid=283434800&flowid=19062&softwareid=280775103&os=Windows&release=4.0&relind=AVAILABLE&rellifecycle=&reltype=latest
The instructions should be in the zip file how to install the patch.
This should cover all theses bugs that you can query in the bug tool kit:
http://tools.cisco.com/Support/BugToolKit/action.do?hdnAction=searchBugs
CSCte45565
CSCto12712
CSCto23584
CSCto23622
CSCto35544
CSCto35577
CSCtq48990 -
Need to do switches configuration archive using the cisco works LMS 3.2
Hi folks,
We have a cisco works LMS 3.2 bundle which contains Resource Manager Essentials 4.3.0 . I am trying to do config archive of all our network switches using RME. I have no idea how to do it . so i came here ...
Guide me what are the things to be done in both switch side and RME side.Hi Mohammed,
You can do this from here :
RME > Admin > Config Mgmt > Archive Mgmt
check the below linlk for more information:
http://www.cisco.com/en/US/docs/net_mgmt/ciscoworks_resource_manager_essentials/4.3/user/guide/config.html#wp1070778
Thanks-
Afroz
[Do rate the useful post] -
Can you monitor Mitel IP Tel on a Cisco router and switching environment? Customer has Mitel Voice but Cisco routers and switches. Will Cisco Works LMS provide functionality?
See this page for a list of LMS white papers:
http://www.cisco.com/en/US/products/sw/cscowork/ps2425/prod_white_papers_list.html
You should fine some deployment guides for each of the various versions. Those will help get you started. -
Cisco Prime NCS integration with ACS 5.1
Hello,
We've an issue with authorization on NCS system. NCS successfully integrated witch ACS, but there is a problem with one user. All users have equivalent rights under root. There is shell profile with all possible tasks (exported from NCS server) configured on ACS. All users exept this one (unlucky one:)) authorizes successfully. In ACS logs, authentification and authorization status for this user is passed and all attributes (policy, profile, AV-pairs e.t.c.) is the same as for another users. This 'unlucky' user gets a following message:
There is surely no browser or network issue. Tried from different PCs with same result. There is no any local info related to this username on the NCS server. When i change one charecter in the username on his ACS account, everything works well. What could be a possible reason of this behaivour? Thanks!
Our ACS v
Version 5.1.0.44.X
And NCS
Version : 1.1.2.Xthis question should be moved to the Security > AAA forums as this sounds more like an ACS issue than NCS.
HTH,
Steve
Please remember to rate useful posts, and mark questions as answered -
Cisco Works LMS 4.0 doesn´t start
Hello All
i have big trouble with me LMS 4.0 installation. I did an Upgrade from LMS 3.2 to LMS 4.0. After that the Works was running without any problems. After some days i´d tried to login on the LMS and it told me something like my lincens where corrupt or so. I´d tried to start the CiscoWorks Demon Manger but he didn´t start. OK after some investigation at the i-net i decided to perform a clean installation of the Server an Cisco Works.
So after i do thes i´d perform a restore of my old Data from LMS 3.2. Now i investicated that my ANI Server Falied to start. OK than i tried to restart the Works Demon ... f... and what will happend ?!?!?! The demon doesn´t start. Can someone help me ?!?! Please i will not perform a new istallation again.
C:\Windows\system32>net start crmdmgtd
The CiscoWorks Daemon Manager service is starting.
The CiscoWorks Daemon Manager service could not be started.
The service did not report an error.
More help is available by typing NET HELPMSG 3534.
Thanks
Mario
Hi i have an update for this issues ... After i´d tried to start all Works- Services be hand ... all Services will start execpt the deamon ... When i loged in i get messages "License Server/Deamon Manager is down. Please check license.log for more information."
Thats the same situtaion befor the new installation.Hi Afroj
i´d just have an update for you and maybe for Martin. I´d checked the services and investigate that the ANIDatabase Engine
was not stoped. After i stoped the service "by Hand". I tried to reinalize the Database and see ... IT WORKS ...
D:\CiscoWorks\CSCOpx\bin>perl.exe dbRestoreOrig.pl dsn=ani dmprefix=ANI
WARNING: Existing contents of ani database will be lost.
Do you want to continue [y/n]?y
INFO: Starting the DataBase
Starting database engine aniEng
INFO: Process created
INFO: Started the Database engine : aniEng Retry 0
INFO: Started the Database engine : aniEng Retry 1
INFO: Started the Database engine : aniEng Retry 2
INFO: Started the Database engine : aniEng Retry 3
INFO: Started the Database engine : aniEng Retry 4
INFO: Started the Database engine : aniEng Retry 5
INFO: Started the Database engine : aniEng Retry 6
INFO: Started the Database engine : aniEng Retry 7
INFO: Started the Database engine : aniEng Retry 8
INFO: Started the Database engine : aniEng Retry 9
INFO: Getting message
INFO: Connect the database dsn=ani
INFO: Connected the Database
INFO: Command Executed
INFO: Connecting the Database ani
INFO: Company=Cisco Systems;Application=NMTG;Signature=010fa55157edb8e14d818eb4f
e3db41447146f1571g32125eb777a87cbf8b29a954f559d4221b792ff8
INFO: Preparing AUTH cmd
INFO: AUTH Executed
INFO: AUTH cmd finished
INFO: Stopping the Database engine ani
Stopping database engine aniEng
INFO: File not exists.SQL Anywhere Command File Hiding Utility Version 10.0.1.40
51
INFO: Database [ani] authenticated successfully.
ani database initialization is completed.
D:\CiscoWorks\CSCOpx\bin>
D:\CiscoWorks\CSCOpx\bin>pdshow ANIServer
Process= ANIServer
State = Running with busy flag set
Pid = 11136
RC = 0
Signo = 0
Start = 8/22/2011 1:01:29 PM
Stop = Not applicable
Core = Not applicable
Info = ANIServer started.
Many Thanks for your help ...
Regards
Mario -
MARS 5.2.7 integration with ACS 4.1
Hello
I cannot find any documentation I can follow to integrate MARS with ACS. I mean I want to use ACS to authenticate user in MARS.
Any of you know if MARS 5.2.7 has this feature? If yes can please give some info where to find docs?
Thank you really much
Best regards Antonello.HI ,
LMS 4.0 no longer integrates with ACS the way that LMS 3.x did. You can still use ACS for authentication in LMS 4.0, but for authorization, each user must have a local account in LMS, and the roles will be assigned using LMS 4.0's new RBAC. Users are defined under Admin > System > User Management > Local User Setup, and roles are defined under Admin > System > User Management > Role Management Setup.
By default, if a user does not have an account in LMS, they will receive the Help Desk role
Please check the below link:
http://www.cisco.com/en/US/docs/net_mgmt/ciscoworks_lan_management_solution/4.2/user/guide/admin/security.html#wp1100379
Thanks-
Afroz
[Do rate the useful post]
Maybe you are looking for
-
Feb 13, 2013 17,10AM I can't sync my downloaded icloud software and it says my ID is a valid Apple ID, but not an icloud ID - this is right after I've set it up as one(When i try to log in on Icloud). Help
-
How to Count a Characteristic Occurence?
Morning, I have Assembly(Material) being displayed as a Row item in my query. My need is to count the number of rows for Assembly in the query. I referred to "How to Count" doc, but that counts every occurence of assembly. Whereas, I need to count an
-
HT203477 Can't open my project after FCP X 10.0.7 crash
Can't open my project after FCP X 10.0.7 crash. Backup file is missing, Autosave Vault too. Pro Maintenance Tools does not fix the problem. The event and media are ok. I have crash log and CurrentVersion.fcpproject. Please help, it's very big project
-
PSE13 - I cannot find serial number
It is not on the back of the box, (too few numbers), it is not on the sleeve for the CD (too few numbers)... Don't know where else to look!!!!
-
How can I get my serial no?
I got stolent my I phone. So I need my serial No of my I phone. Due to the serial no in the box is different with the phone. I changed one at the store so i need document that shope I am the owner of new serial no. Can you give me some advice about i