Covers user management fundamentals including local user configuration, access control workflows, authentication methods, and administrative recovery procedures for system security.
User access, authorization, and accounting
Explains the authentication, authorization, and accounting functions managed by APIC policies in the ACI fabric.
Access rights workflow dependencies
Describes the coordination requirements between tenant and fabric administrators when RBAC rules restrict access to fabric domains needed for certain configurations.
APIC local users
Explains user accounts configured directly on the Cisco Application Policy Infrastructure Controller instead of external AAA servers.
Change remote user role
Describes the dynamic modification of user privileges that allows users to request role changes through external authentication servers.
Signature-based transactions
Describes an authentication method that uses calculated signatures with private keys for secure APIC transactions.
Accounting
Explains how Cisco Application Centric Infrastructure fabric accounting is handled by managed objects that track user sessions and configuration changes.
Local user configuration
Describes how to configure local user accounts with granular, role-based access control for system management.
Generate an X.509 certificate and a private key
Configure X.509 certificate and private key generation using OpenSSL commands for secure authentication.
Configure user lockout after continuous failed attempts to log in using the GUI
Configure user lockout settings to block users from logging in after a specified number of failed login attempts within a defined time period.
Configure local user for OTP-based authentication
Configure OTP-based two-factor authentication for a local user using the Cisco APIC GUI to enhance security by requiring both password and time-based token authentication.
Recover the Cisco APIC admin password
Configure admin password recovery for Cisco APIC with TAC assistance.