<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Trouble with Radius (MS NPS) on cisco Switches\Router in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/trouble-with-radius-ms-nps-on-cisco-switches-router/m-p/2033348#M200361</link>
    <description>&lt;P&gt;All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&amp;nbsp; We are setting up a new office and I am trying to get RADIUS setup for authentication to my switches and routers.&amp;nbsp; Currently I am working on a 3750 running IOS 15 and getting hung on what I think on something small.&amp;nbsp; I have attached my Microsoft NPS Network Policy.&amp;nbsp; Below is my IOS config:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa group server radius corp-radius&lt;/P&gt;&lt;P&gt; server 10.15.10.20 auth-port 1812 acct-port 1813&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa authentication login default group corp-radius local&lt;/P&gt;&lt;P&gt;aaa authentication login radius-localfallback group corp-radius enable&lt;/P&gt;&lt;P&gt;aaa authorization exec default group radius&lt;/P&gt;&lt;P&gt;aaa accounting exec default start-stop group corp-radius&lt;/P&gt;&lt;P&gt;aaa accounting network default start-stop group corp-radius&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa session-id common&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;radius-server attribute 6 on-for-login-auth&lt;/P&gt;&lt;P&gt;radius-server host 10.15.10.20 auth-port 1812 acct-port 1813 timeout 10 retransmit 3 key 7 1446435A5D&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also I have a debug output:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sep 21 02:24:43.481: AAA/BIND(00000033): Bind i/f&lt;/P&gt;&lt;P&gt;Sep 21 02:24:43.481: AAA/AUTHEN/LOGIN (00000033): Pick method list 'default'&lt;/P&gt;&lt;P&gt;Sep 21 02:24:43.481: RADIUS/ENCODE(00000033): ask "Password: "&lt;/P&gt;&lt;P&gt;Sep 21 02:24:43.481: RADIUS/ENCODE(00000033): send packet; GET_PASSWORD&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS/ENCODE(00000033):Orig. component type = Exec&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS:&amp;nbsp; AAA Unsupported Attr: interface&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [222] 4&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS:&amp;nbsp;&amp;nbsp; 74 74&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ tt]&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS(00000033): Config NAS IP: 0.0.0.0&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS(00000033): Config NAS IPv6: ::&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS/ENCODE(00000033): acct_session_id: 40&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS(00000033): sending&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS/ENCODE: Best Local IP-Address 10.15.10.15 for Radius-Server 10.15.10.20&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS(00000033): Send Access-Request to 10.15.10.20:1812 id 1645/43, len 83&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS:&amp;nbsp; authenticator A2 8E F9 0E 6D 24 EB 31 - C3 90 ED BE 0F 54 AE CF&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS:&amp;nbsp; User-Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 15&amp;nbsp; "admin-lharvey"&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS:&amp;nbsp; User-Password&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [2]&amp;nbsp;&amp;nbsp; 18&amp;nbsp; *&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS:&amp;nbsp; NAS-Port&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [5]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 1&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS:&amp;nbsp; NAS-Port-Id&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [87]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; "tty1"&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.322: RADIUS:&amp;nbsp; NAS-Port-Type&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [61]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; Virtual&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [5]&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.322: RADIUS:&amp;nbsp; Service-Type&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [6]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; Login&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.322: RADIUS:&amp;nbsp; NAS-IP-Address&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [4]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 10.15.10.15&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.322: RADIUS(00000033): Sending a IPv4 Radius Packet&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.322: RADIUS(00000033): Started 10 sec timeout&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.330: RADIUS: Received from id 1645/43 10.15.10.20:1812, Access-Reject, len 20&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.330: RADIUS:&amp;nbsp; authenticator 61 69 0B DB E3 1F DE 88 - C9 C9 DB 8A 3A FD A2 07&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.330: RADIUS(00000033): Received from id 1645/43&lt;/P&gt;&lt;P&gt;Sep 21 02:24:54.343: AAA/AUTHEN/LOGIN (00000033): Pick method list 'default'&lt;/P&gt;&lt;P&gt;Sep 21 02:24:54.343: RADIUS/ENCODE(00000033): ask "Password: "&lt;/P&gt;&lt;P&gt;Sep 21 02:24:54.343: RADIUS/ENCODE(00000033): send packet; GET_PASSWORD&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any help or ideas would be greatly appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 02:34:25 GMT</pubDate>
    <dc:creator>mlharv007</dc:creator>
    <dc:date>2019-03-11T02:34:25Z</dc:date>
    <item>
      <title>Trouble with Radius (MS NPS) on cisco Switches\Router</title>
      <link>https://community.cisco.com/t5/network-access-control/trouble-with-radius-ms-nps-on-cisco-switches-router/m-p/2033348#M200361</link>
      <description>&lt;P&gt;All,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&amp;nbsp; We are setting up a new office and I am trying to get RADIUS setup for authentication to my switches and routers.&amp;nbsp; Currently I am working on a 3750 running IOS 15 and getting hung on what I think on something small.&amp;nbsp; I have attached my Microsoft NPS Network Policy.&amp;nbsp; Below is my IOS config:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa group server radius corp-radius&lt;/P&gt;&lt;P&gt; server 10.15.10.20 auth-port 1812 acct-port 1813&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa authentication login default group corp-radius local&lt;/P&gt;&lt;P&gt;aaa authentication login radius-localfallback group corp-radius enable&lt;/P&gt;&lt;P&gt;aaa authorization exec default group radius&lt;/P&gt;&lt;P&gt;aaa accounting exec default start-stop group corp-radius&lt;/P&gt;&lt;P&gt;aaa accounting network default start-stop group corp-radius&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;!&lt;/P&gt;&lt;P&gt;aaa session-id common&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;radius-server attribute 6 on-for-login-auth&lt;/P&gt;&lt;P&gt;radius-server host 10.15.10.20 auth-port 1812 acct-port 1813 timeout 10 retransmit 3 key 7 1446435A5D&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also I have a debug output:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sep 21 02:24:43.481: AAA/BIND(00000033): Bind i/f&lt;/P&gt;&lt;P&gt;Sep 21 02:24:43.481: AAA/AUTHEN/LOGIN (00000033): Pick method list 'default'&lt;/P&gt;&lt;P&gt;Sep 21 02:24:43.481: RADIUS/ENCODE(00000033): ask "Password: "&lt;/P&gt;&lt;P&gt;Sep 21 02:24:43.481: RADIUS/ENCODE(00000033): send packet; GET_PASSWORD&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS/ENCODE(00000033):Orig. component type = Exec&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS:&amp;nbsp; AAA Unsupported Attr: interface&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [222] 4&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS:&amp;nbsp;&amp;nbsp; 74 74&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [ tt]&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS(00000033): Config NAS IP: 0.0.0.0&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS(00000033): Config NAS IPv6: ::&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS/ENCODE(00000033): acct_session_id: 40&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS(00000033): sending&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS/ENCODE: Best Local IP-Address 10.15.10.15 for Radius-Server 10.15.10.20&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS(00000033): Send Access-Request to 10.15.10.20:1812 id 1645/43, len 83&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS:&amp;nbsp; authenticator A2 8E F9 0E 6D 24 EB 31 - C3 90 ED BE 0F 54 AE CF&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS:&amp;nbsp; User-Name&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&amp;nbsp;&amp;nbsp; 15&amp;nbsp; "admin-lharvey"&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS:&amp;nbsp; User-Password&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [2]&amp;nbsp;&amp;nbsp; 18&amp;nbsp; *&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS:&amp;nbsp; NAS-Port&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [5]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 1&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.314: RADIUS:&amp;nbsp; NAS-Port-Id&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [87]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; "tty1"&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.322: RADIUS:&amp;nbsp; NAS-Port-Type&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [61]&amp;nbsp; 6&amp;nbsp;&amp;nbsp; Virtual&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [5]&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.322: RADIUS:&amp;nbsp; Service-Type&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [6]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; Login&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [1]&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.322: RADIUS:&amp;nbsp; NAS-IP-Address&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; [4]&amp;nbsp;&amp;nbsp; 6&amp;nbsp;&amp;nbsp; 10.15.10.15&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.322: RADIUS(00000033): Sending a IPv4 Radius Packet&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.322: RADIUS(00000033): Started 10 sec timeout&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.330: RADIUS: Received from id 1645/43 10.15.10.20:1812, Access-Reject, len 20&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.330: RADIUS:&amp;nbsp; authenticator 61 69 0B DB E3 1F DE 88 - C9 C9 DB 8A 3A FD A2 07&lt;/P&gt;&lt;P&gt;Sep 21 02:24:52.330: RADIUS(00000033): Received from id 1645/43&lt;/P&gt;&lt;P&gt;Sep 21 02:24:54.343: AAA/AUTHEN/LOGIN (00000033): Pick method list 'default'&lt;/P&gt;&lt;P&gt;Sep 21 02:24:54.343: RADIUS/ENCODE(00000033): ask "Password: "&lt;/P&gt;&lt;P&gt;Sep 21 02:24:54.343: RADIUS/ENCODE(00000033): send packet; GET_PASSWORD&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Any help or ideas would be greatly appreciated.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 02:34:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/trouble-with-radius-ms-nps-on-cisco-switches-router/m-p/2033348#M200361</guid>
      <dc:creator>mlharv007</dc:creator>
      <dc:date>2019-03-11T02:34:25Z</dc:date>
    </item>
    <item>
      <title>Trouble with Radius (MS NPS) on cisco Switches\Router</title>
      <link>https://community.cisco.com/t5/network-access-control/trouble-with-radius-ms-nps-on-cisco-switches-router/m-p/2033349#M200365</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;HI,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Do the event logs indicate any error messages? Also do you have multiple interfaces on this switch if so, are you using &lt;/P&gt;&lt;P&gt;10.15.10.15 as the client or is there another ip address, if so. please use the ip radius source-interface vlan x.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If not then please verify if the user you are testing with is the Windows Group and that the shared secret is correct.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Other than everything looks fine.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Tarik Admani &lt;BR /&gt;*Please rate helpful posts*&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Sep 2012 02:51:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/trouble-with-radius-ms-nps-on-cisco-switches-router/m-p/2033349#M200365</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2012-09-21T02:51:40Z</dc:date>
    </item>
    <item>
      <title>Re: Trouble with Radius (MS NPS) on cisco Switches\Router</title>
      <link>https://community.cisco.com/t5/network-access-control/trouble-with-radius-ms-nps-on-cisco-switches-router/m-p/2033350#M200377</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have attached the event log message it states:&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 8pt;"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;"The user attempted to use an authentication method that is not enabled on the matching network policy."&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 8pt;"&gt; &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;I have attached.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have verified my KEYS and I have allow acces in my AD Dial-In properties.&amp;nbsp;&amp;nbsp; My authentication on my network policy is unencrypted PAP,SPAP.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My network connection request is not set to override network policy.&amp;nbsp; I also have my WLAN using 802.1x on this NPS, but i have the RADIUS as processing order 1?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is my switch using a different authentication message?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks in advance.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 8pt;"&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/2/1/0/104012-NPS-Event%20Properties.png" class="jive-image" /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 8pt;"&gt;&lt;IMG src="http://supportforums.cisco.com/sites/default/files/legacy/4/1/0/104014-NPS-Event%20Properties1.png" class="jive-image" /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="font-size: 8pt;"&gt;Sorry, here is the correct image&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Sep 2012 12:19:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/trouble-with-radius-ms-nps-on-cisco-switches-router/m-p/2033350#M200377</guid>
      <dc:creator>mlharv007</dc:creator>
      <dc:date>2012-09-21T12:19:37Z</dc:date>
    </item>
    <item>
      <title>Re: Trouble with Radius (MS NPS) on cisco Switches\Router</title>
      <link>https://community.cisco.com/t5/network-access-control/trouble-with-radius-ms-nps-on-cisco-switches-router/m-p/2033351#M200387</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Lane, by default, RADIUS requests will be sent via the PAP_ASCII method unless you specify otherwise in your AAA config on the NAS device, so the auth method should be fine as defined in your NPS policy.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;However, I suspect the match order may have something to do with it, specifically, the match criteria for your WLAN. Could you please post the NPS Dot1x WLAN policy configuration?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Edit:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Lane, can you also post the vty line configuration from your switch as well? Remember that unless you specify a named AAA method for the vty/aux/con lines, &lt;STRONG&gt;default&lt;/STRONG&gt; will apply to all input methods. Just a though that occurred to me after the inital post.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Sep 2012 15:42:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/trouble-with-radius-ms-nps-on-cisco-switches-router/m-p/2033351#M200387</guid>
      <dc:creator>Travis Hysuick</dc:creator>
      <dc:date>2012-09-21T15:42:40Z</dc:date>
    </item>
    <item>
      <title>Trouble with Radius (MS NPS) on cisco Switches\Router</title>
      <link>https://community.cisco.com/t5/network-access-control/trouble-with-radius-ms-nps-on-cisco-switches-router/m-p/2033352#M200397</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Travis that was it!!&amp;nbsp; It was point correctly to my connection request policy, but using a different network request policy.&amp;nbsp; It wasn't pointed to the WLAN but I guess a default one when RRAS was installed maybe.&amp;nbsp; What is the best way to ensure requests are pointing to the correct policy in the future if we add/?&amp;nbsp; what did I miss te first time so I am not on the forum again.&amp;nbsp; Anyway thanks all,&amp;nbsp; I looked at the logs in NPS to long and not pick up on that.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&amp;nbsp; Lane.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 21 Sep 2012 21:47:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/trouble-with-radius-ms-nps-on-cisco-switches-router/m-p/2033352#M200397</guid>
      <dc:creator>mlharv007</dc:creator>
      <dc:date>2012-09-21T21:47:25Z</dc:date>
    </item>
  </channel>
</rss>

