Forum Discussion

seong_hun_33109's avatar
seong_hun_33109
Icon for Nimbostratus rankNimbostratus
Aug 28, 2018

Tacacs+ login priority setting question

Hi, everyone.

 

I can't find what the customer asks, so I'm asking for help.

 

LOCAL users who are not registered in TACACS SERVER want to be able to log in as a LOCAL user when they can not log in and can not communicate with TACACS.

 

Is the feature you want on your F5 device?

 

2 Replies

  • mf5's avatar
    mf5
    Icon for Nimbostratus rankNimbostratus

    Local users will be authenticated locally only

     

  • Hi Seong,

     

    There is no fallback authentication in F5. You either authenticate with TACACS or Locally.

     

    If the user (abc123) is part of tacacs remote role, he will get authenticated with TACACs authentication, there is no fallback to getting locally authenticated when TACACS servers are unreachable/issues.

     

    If the user (xyz789) is a localuser, he will get authenticated locally, it will not goto TACACS for authentication even if the user (xyz789) is having some TACACS remote role.