maximum length of TACACS User ID

cancel
Showing results for 
Show  only  | Search instead for 
Did you mean: 
Announcements
Please sign in to see details of an important advisory in our Customer Advisories area.

maximum length of TACACS User ID

L1 Bithead

We use TACACS+ server for admin authentication.

 

Is there a limit on the length of an ID?  I have one that is 40 characters (we use email IDs).

 

Getting an auth-success log message for this user, but then a Critical "create-admin-acct-error" message:

 

Failed to create local user account for admin user: <40 character email>

2 REPLIES 2

Cyber Elite
Cyber Elite

@cdwing,

Admin users are limited to 31 characters. 

L1 Bithead

Interesting...   

I have an ID that is 40 characters, when you drop the domain (@zzz.com), that takes it to 32 and it works.  I know that creating a local admin has the restriction of 31.

 

We have an auth sequence that drops the original domain and then adds it back for login attempts to get around that CLI does not allow IDs with @ symbols.

 

  • 1861 Views
  • 2 replies
  • 0 Likes
Like what you see?

Show your appreciation!

Click Like if a post is helpful to you or if you just want to show your support.

Click Accept as Solution to acknowledge that the answer to your question has been provided.

The button appears next to the replies on topics you’ve started. The member who gave the solution and all future visitors to this topic will appreciate it!

These simple actions take just seconds of your time, but go a long way in showing appreciation for community members and the LIVEcommunity as a whole!

The LIVEcommunity thanks you for your participation!