<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Test AAA group in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/test-aaa-group/m-p/2380880#M134298</link>
    <description>&lt;P&gt;hello everyone,&lt;/P&gt;&lt;P&gt;I want to test aaa authentication for cisco router, i have configured aaa group for redundancy. When i test aaa server group tacacs+ user password it works.and user gets authenticated via primary acs, now i want to check the authentication with secondary server.How can i do that? &lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 04:06:39 GMT</pubDate>
    <dc:creator>Rizwan Khan</dc:creator>
    <dc:date>2019-03-11T04:06:39Z</dc:date>
    <item>
      <title>Test AAA group</title>
      <link>https://community.cisco.com/t5/network-access-control/test-aaa-group/m-p/2380880#M134298</link>
      <description>&lt;P&gt;hello everyone,&lt;/P&gt;&lt;P&gt;I want to test aaa authentication for cisco router, i have configured aaa group for redundancy. When i test aaa server group tacacs+ user password it works.and user gets authenticated via primary acs, now i want to check the authentication with secondary server.How can i do that? &lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 04:06:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/test-aaa-group/m-p/2380880#M134298</guid>
      <dc:creator>Rizwan Khan</dc:creator>
      <dc:date>2019-03-11T04:06:39Z</dc:date>
    </item>
    <item>
      <title>Test AAA group</title>
      <link>https://community.cisco.com/t5/network-access-control/test-aaa-group/m-p/2380881#M134305</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There are a couple of things that you might consider that would allow you to test the secondary server.&lt;/P&gt;&lt;P&gt;- you could temporarily make the primary server not available and test with the secondary server.&lt;/P&gt;&lt;P&gt;- you could temporarily make the primary server to be secondary and test with the secondary server while it is acting as the active server.&lt;/P&gt;&lt;P&gt;- you could create a new aaa server group, assign the secondary server to that group, and change one of the aaa authentication statements to use that group.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rick&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Nov 2013 20:44:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/test-aaa-group/m-p/2380881#M134305</guid>
      <dc:creator>Richard Burts</dc:creator>
      <dc:date>2013-11-18T20:44:20Z</dc:date>
    </item>
    <item>
      <title>Test AAA group</title>
      <link>https://community.cisco.com/t5/network-access-control/test-aaa-group/m-p/2380882#M134310</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Burts,&lt;/P&gt;&lt;P&gt;Thank you for the reply. So it means i cannot specify aaa server so that we can test it. except the options u gave me.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Nov 2013 21:14:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/test-aaa-group/m-p/2380882#M134310</guid>
      <dc:creator>Rizwan Khan</dc:creator>
      <dc:date>2013-11-18T21:14:08Z</dc:date>
    </item>
    <item>
      <title>Test AAA group</title>
      <link>https://community.cisco.com/t5/network-access-control/test-aaa-group/m-p/2380883#M134337</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I am sure that there are other options. I gave the ones that I thought were the most simple to implement but there are surely other possibilities.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It sounds like you have something in mind. In that case please tell us what you would like and we can try to tell you is it is possible.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rick&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 18 Nov 2013 21:34:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/test-aaa-group/m-p/2380883#M134337</guid>
      <dc:creator>Richard Burts</dc:creator>
      <dc:date>2013-11-18T21:34:08Z</dc:date>
    </item>
    <item>
      <title>Test AAA group</title>
      <link>https://community.cisco.com/t5/network-access-control/test-aaa-group/m-p/2380884#M134431</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello mate,&lt;/P&gt;&lt;P&gt;Let me make you understand what i want in actual., below are the configurations&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa group server tacacs+ AAA-Servers&lt;/P&gt;&lt;P&gt;server 10.10.7.32&lt;/P&gt;&lt;P&gt;server 192.168.150.16&lt;/P&gt;&lt;P&gt;exit&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;tacacs-server host 10.10.7.32 key *****&lt;/P&gt;&lt;P&gt;tacacs-server host 192.168.150.16 key *****&lt;/P&gt;&lt;P&gt;...........................................&lt;/P&gt;&lt;P&gt;1) when i issue the command&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;test aaa group server AAA-Servers user password legacy&lt;/STRONG&gt;, it says user is authenticated. In that case it has done authentication via primary acs which is 10.10.7.32. Now i want to test it with the server 192.168.150.16. How can i do that?&lt;/P&gt;&lt;P&gt;2) it has an option to test a particular server too but its asking for too much info like,&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;test aaa group server AAA-Servers server 192.168.150.16 username password&lt;/STRONG&gt; ( it asks for new-code, and port ) which i am unaware of.&lt;/P&gt;&lt;P&gt;Can you please throw some light on it?&lt;/P&gt;&lt;P&gt;Thanks in advance,&lt;/P&gt;&lt;P&gt;Rizwan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Nov 2013 16:56:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/test-aaa-group/m-p/2380884#M134431</guid>
      <dc:creator>Rizwan Khan</dc:creator>
      <dc:date>2013-11-19T16:56:11Z</dc:date>
    </item>
    <item>
      <title>Test AAA group</title>
      <link>https://community.cisco.com/t5/network-access-control/test-aaa-group/m-p/2380885#M134517</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Rizwan&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Perhaps you can try something like this&lt;/P&gt;&lt;P&gt;aaa group server tacacs+ test-servers&lt;/P&gt;&lt;P&gt;server 192.168.150.16&lt;/P&gt;&lt;P&gt;server 10.10.7.32&lt;/P&gt;&lt;P&gt;and then this command&lt;/P&gt;&lt;P&gt;test aaa group server test-servers user password legacy&lt;/P&gt;&lt;P&gt;that should run your test using the secondary server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rick&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 19 Nov 2013 17:30:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/test-aaa-group/m-p/2380885#M134517</guid>
      <dc:creator>Richard Burts</dc:creator>
      <dc:date>2013-11-19T17:30:41Z</dc:date>
    </item>
  </channel>
</rss>

