<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic SSH Access to the ACS 5.1 in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594661#M252730</link>
    <description>&lt;P&gt;Is there any requirement of installing any certificates on the ACS if authentication is performed from a SSH client.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am getting the below messages when I access from a SSH client&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. Bind i/f&lt;/P&gt;&lt;P&gt;2. Pick method list default&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and then it just fails to authenticate, This works well with telnet.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 00:46:40 GMT</pubDate>
    <dc:creator>sidcracker</dc:creator>
    <dc:date>2019-03-11T00:46:40Z</dc:date>
    <item>
      <title>SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594661#M252730</link>
      <description>&lt;P&gt;Is there any requirement of installing any certificates on the ACS if authentication is performed from a SSH client.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am getting the below messages when I access from a SSH client&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1. Bind i/f&lt;/P&gt;&lt;P&gt;2. Pick method list default&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and then it just fails to authenticate, This works well with telnet.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 00:46:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594661#M252730</guid>
      <dc:creator>sidcracker</dc:creator>
      <dc:date>2019-03-11T00:46:40Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594662#M252810</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;STRANGE! ACS 5.x doesn't support TELNET.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;No you don't need to generate RSA key or need to install any certificate prior to access ACS 5 with SSH client. Its by-default enabled on ACS 5.x&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;To access the ACS CLI environment, use any SSH client that supports SSH v2. &lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_system/5.1/command/reference/cli_use.html#wp1114037"&gt;http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_system/5.1/command/reference/cli_use.html#wp1114037&lt;/A&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Also, ACS access is not configured via AAA login method. You must be accessing some other device in your network. Please verify the ACS ip address.&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Regds, Jatin&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;&lt;BR /&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN style="color: #800000;"&gt;Do rate helpful posts~&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 05:02:57 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594662#M252810</guid>
      <dc:creator>Jatin Katyal</dc:creator>
      <dc:date>2011-02-01T05:02:57Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594663#M252849</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Jatin, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I didn't mean accessing the ACS via ssh, I meant performing authentication from a router via ssh. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Anyhow looks like both telnet and ssh doesn't work. I gave the same commands for the other device (switch) and it authenticated with TACACS. Whereas the router just looks at the default list and stops there, doesn't even look at the TACACS part. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sending the error message in the next mail&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 06:26:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594663#M252849</guid>
      <dc:creator>sidcracker</dc:creator>
      <dc:date>2011-02-01T06:26:12Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594664#M252882</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;.Feb  1 06:03:31.297: TAC+: 10.72.27.3 req=61AB3EC Qd id=1018722310 ver=192 handle=0x5FFDCC8 expire=5 AUTHOR/START queued&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:31.397: TAC+: 10.72.27.3 id=1018722310 wrote 99 of 99 bytes&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:31.397: TAC+: 10.72.27.3 req=61AB3EC Qd id=1018722310 ver=192 handle=0x5FFDCC8 expire=4 AUTHOR/START sent&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:31.397: TAC+: 10.72.27.3 read END-OF-FILE&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:31.397: TAC+: req=61AB3EC Tx id=1018722310 ver=192 handle=0x5FFDCC8 expire=4 AUTHOR/START processed&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:31.397: TAC+: periodic timer stopped (queue empty)&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:31.397: TAC+: Closing TCP/IP 0x5FFDCC8 connection to 10.72.27.3/49&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.354: AAA/BIND(000001CD): Bind i/f&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.354: AAA/AUTHEN/LOGIN (000001CD): Pick method list 'default'&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.354: TPLUS: Queuing AAA Authentication request 461 for processing&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.354: TPLUS: processing authentication start request id 461&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.354: TPLUS: Authentication start packet created for 461()&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.354: TPLUS: Using server 10.72.27.3&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.354: TPLUS(000001CD)/0/NB_WAIT/61AB6DC: Started 5 sec timeout&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.354: TPLUS(000001CD)/0/NB_WAIT: socket event 2&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.354: TPLUS(000001CD)/0/NB_WAIT: wrote entire 34 bytes request&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.354: TPLUS(000001CD)/0/READ: socket event 1&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.354: TPLUS(000001CD)/0/READ: Would block while reading&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.363: TPLUS(000001CD)/0/READ: socket event 1&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.363: TPLUS(000001CD)/0/READ: read 0 bytes&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.363: TPLUS(000001CD)/0/READ: socket event 1&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.363: TPLUS(000001CD)/0/READ: errno 254&lt;/P&gt;&lt;P&gt;.Feb  1 06:03:51.363: TPLUS(000001CD)/0/61AB6DC: Processing the reply packet&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from my iPhone&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 06:35:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594664#M252882</guid>
      <dc:creator>sidcracker</dc:creator>
      <dc:date>2011-02-01T06:35:13Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594665#M252912</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi sid,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;what is syntax and commands you are using for the authenication for router/switch ssh?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you are using default method it will take preference over named- method list. Just give the AAA commands you are using for authenication.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Nitesh&lt;/P&gt;&lt;P&gt;CCIE Security&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 07:15:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594665#M252912</guid>
      <dc:creator>saxenanitesh8522</dc:creator>
      <dc:date>2011-02-01T07:15:46Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594666#M252941</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Aaa new-model&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authentication login default group TACACS+ local&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authorization config-commands&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authorization exec default group TACACS+ local&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authorization commands 0 default group TACACS+ none&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authorization commands 1 default group TACACS+ none&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authorization commands 15 default group TACACS+ none&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;TACACS-server host 1.1.1.1 key asdfgh&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;FOR ACS&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 07:54:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594666#M252941</guid>
      <dc:creator>sidcracker</dc:creator>
      <dc:date>2011-02-01T07:54:10Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594667#M252960</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi sid,&lt;/P&gt;&lt;P&gt;you didnt put the commands which you might have applied on the line interface of vty &amp;amp; console.&lt;/P&gt;&lt;P&gt;please can you put that command.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Nitesh Saxena&lt;/P&gt;&lt;P&gt;CCIE Security&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 08:01:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594667#M252960</guid>
      <dc:creator>saxenanitesh8522</dc:creator>
      <dc:date>2011-02-01T08:01:25Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594668#M252991</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;There is no custom authentication method. Isn't the default method supposed to apply to all vty lines. As you said I tried applying it earlier thus afternoon but the list didn't apply on the line probably since it's by default&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I did the same for the switch without applying any vty auto method and it works fine&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from my iPhone&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 08:10:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594668#M252991</guid>
      <dc:creator>sidcracker</dc:creator>
      <dc:date>2011-02-01T08:10:13Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594669#M253010</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Sid,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I see that you have used default list for login so it will apply to all the lines i.e. console, vty and auxillary.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Did you generate a rsa key pair for ssh?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;the following link will give you details of the how to configure SSH on the router or switch:&lt;/P&gt;&lt;P&gt;&lt;A href="http://www.cisco.com/en/US/tech/tk583/tk617/technologies_tech_note09186a00800949e2.shtml"&gt;http://www.cisco.com/en/US/tech/tk583/tk617/technologies_tech_note09186a00800949e2.shtml&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anisha&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;P.S.: please mark this thread as resolved if you think your query is resolved.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 08:14:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594669#M253010</guid>
      <dc:creator>andamani</dc:creator>
      <dc:date>2011-02-01T08:14:55Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594670#M253020</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The router is fully functional just that AAA is not authenticating with ACS. Its very wired that the same config is working for the switch but not for the router. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Am wondering if any other config is required for the router&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It's not even going beyond finding the default list to be applied &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from my iPhone&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 08:21:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594670#M253020</guid>
      <dc:creator>sidcracker</dc:creator>
      <dc:date>2011-02-01T08:21:17Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594671#M253029</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;it might be possible the router didnt accept it.&lt;/P&gt;&lt;P&gt;if you can try putting it manually&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;line vty 0 4&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; login authenication default&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; authorization exec default&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; authorization command PRIV_LVL default&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 08:22:22 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594671#M253029</guid>
      <dc:creator>saxenanitesh8522</dc:creator>
      <dc:date>2011-02-01T08:22:22Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594672#M253035</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Sid,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am including the basic configuration required on a router for SSH or telnet:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To enable telnet and ssh access on the router&lt;BR /&gt;_____________________________________________&lt;/P&gt;&lt;P&gt;line vty 0 4&lt;BR /&gt; transport input telnet ssh&lt;BR /&gt; transport output telnet ssh&lt;BR /&gt; login local&lt;BR /&gt;hostname abc&lt;BR /&gt;ip domain name &lt;ABC.COM&gt; /used for key generation&lt;BR /&gt;username &lt;USERNAME&gt; password &lt;PASSWORD&gt;&lt;BR /&gt;crypto key generate rsa modulus 1024&lt;/PASSWORD&gt;&lt;/USERNAME&gt;&lt;/ABC.COM&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also please let me know if the test authentication is working from troublesome router or not.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anisha&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 08:25:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594672#M253035</guid>
      <dc:creator>andamani</dc:creator>
      <dc:date>2011-02-01T08:25:39Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594673#M253040</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I did &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from my iPhone&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 08:25:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594673#M253040</guid>
      <dc:creator>sidcracker</dc:creator>
      <dc:date>2011-02-01T08:25:48Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594674#M253044</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I did configure that but when put the show run, I could find the list in the line vty. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Another thing is that in the logs it says bind I/f. Not sure what that means.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is this some known bug?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from my iPhone&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 08:27:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594674#M253044</guid>
      <dc:creator>sidcracker</dc:creator>
      <dc:date>2011-02-01T08:27:40Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594675#M253046</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi anisha,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You have given him the wrong set of commands for AAA.&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;the command in router to be given&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip domain-name &lt;NAME&gt;&lt;/NAME&gt;&lt;/P&gt;&lt;P&gt;crypto key generate rsa modulus 1024&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;line vty 0 4&lt;/P&gt;&lt;P&gt; login authenication Default&lt;/P&gt;&lt;P&gt; authorization exec default&lt;/P&gt;&lt;P&gt; authorization command &lt;PRIV_LVL&gt; default&lt;/PRIV_LVL&gt;&lt;/P&gt;&lt;P&gt; transport input ssh telnet&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;nitesh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 08:30:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594675#M253046</guid>
      <dc:creator>saxenanitesh8522</dc:creator>
      <dc:date>2011-02-01T08:30:39Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594676#M253047</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Local authentication is working fine. All the commands you mentioned are there&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from my iPhone&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 08:31:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594676#M253047</guid>
      <dc:creator>sidcracker</dc:creator>
      <dc:date>2011-02-01T08:31:40Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594677#M253048</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;sid,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;just share the running configuration of aaa and line vty and ssh configuration with you have done on the router. its best&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There is no change in the command in switch and router. they remain the same only. So that could not be the case.&lt;/P&gt;&lt;P&gt;Maybe the router might not be taking the default method list just apply it manually again in the router under line console and vty.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 08:32:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594677#M253048</guid>
      <dc:creator>saxenanitesh8522</dc:creator>
      <dc:date>2011-02-01T08:32:40Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594678#M253049</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ok I will try that. I can't access the router now. Will havevto do it in the morning.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks anyhow for the help&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sent from my iPhone&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 08:36:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594678#M253049</guid>
      <dc:creator>sidcracker</dc:creator>
      <dc:date>2011-02-01T08:36:11Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594679#M253050</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi sid,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;please try this command and tell the output which is coming on the screen&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;test aaa group tacas+ &lt;USER_NAME&gt; &lt;PASSWORD&gt; legacy&lt;/PASSWORD&gt;&lt;/USER_NAME&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and see the response you are getting.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 08:36:29 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594679#M253050</guid>
      <dc:creator>saxenanitesh8522</dc:creator>
      <dc:date>2011-02-01T08:36:29Z</dc:date>
    </item>
    <item>
      <title>Re: SSH Access to the ACS 5.1</title>
      <link>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594680#M253051</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Nitesh,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for pointing that .. there is no need to apply the command mentioned below as default will apply to all 3 interfaces.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;login authenication Default&lt;/P&gt;&lt;P&gt;authorization exec default&lt;/P&gt;&lt;P&gt;authorization command &lt;PRIV_LVL&gt; default&lt;/PRIV_LVL&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Also default method list is being picked as per debugs.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sid please do not key the command "login local" in line Vty. Please check the configuration and let us know.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 01 Feb 2011 08:38:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ssh-access-to-the-acs-5-1/m-p/1594680#M253051</guid>
      <dc:creator>andamani</dc:creator>
      <dc:date>2011-02-01T08:38:18Z</dc:date>
    </item>
  </channel>
</rss>

