<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: How to eliminate a double login from acs? in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618103#M291057</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi James,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Got it ...&lt;/P&gt;&lt;P&gt;Try this:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no aaa authentication login default group tacacs+ line enable&lt;/P&gt;&lt;P&gt;aaa authentication login TEST group tacacs+ line enable&lt;/P&gt;&lt;P&gt;line vty 0 4&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; login authentication test&lt;/P&gt;&lt;P&gt;line vty 5 15&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; login authentication test&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know how it goes.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anisha&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;P.S.: Please mark this thread as answered if you feel your query is answered.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 25 Jan 2011 13:57:00 GMT</pubDate>
    <dc:creator>andamani</dc:creator>
    <dc:date>2011-01-25T13:57:00Z</dc:date>
    <item>
      <title>How to eliminate a double login from acs?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618100#M291036</link>
      <description>&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When using a cisco 2811 for terminal server connectivity, I am receiving tacacs login and password prompts twice:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 1) First from the Cisco 2811 terminal server&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; 2) Secondly from the console connected device which is also configured for tacacs. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; Is it possible to eliminate the tacacs login and password prompt that is generated from the Cisco terminal server?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 00:44:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618100#M291036</guid>
      <dc:creator>jawill47ec</dc:creator>
      <dc:date>2019-03-11T00:44:59Z</dc:date>
    </item>
    <item>
      <title>Re: How to eliminate a double login from acs?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618101#M291041</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please share the configuration of the router.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;you will have a configuration as follows or something similar:&lt;/P&gt;&lt;P&gt;aaa authentication login default group tacacs local.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just put a "no " in front of this configuration. i.e. you need to do the following:&lt;/P&gt;&lt;P&gt;no aaa authentication login default group tacacs local.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;this will disable the prompt of authentication on the router.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anisha&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;P.S.: please mark this post answered if you feel your query is answered.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 25 Jan 2011 06:34:27 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618101#M291041</guid>
      <dc:creator>andamani</dc:creator>
      <dc:date>2011-01-25T06:34:27Z</dc:date>
    </item>
    <item>
      <title>Re: How to eliminate a double login from acs?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618102#M291048</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Anisha,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for your post.&amp;nbsp; Here are the aaa statements:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa new-model&lt;BR /&gt;aaa authentication login default group tacacs+ line enable&lt;/P&gt;&lt;P&gt;aaa authorization config-commands&lt;BR /&gt;aaa authorization exec default group tacacs+ if-authenticated&lt;BR /&gt;aaa authorization commands 0 default group tacacs+ if-authenticated&lt;BR /&gt;aaa authorization commands 1 default group tacacs+ if-authenticated&lt;BR /&gt;aaa authorization commands 15 default group tacacs+ if-authenticated&lt;/P&gt;&lt;P&gt;tacacs-server host 1.1.1.1 &lt;KEY info="" removed=""&gt;&lt;/KEY&gt;&lt;/P&gt;&lt;P&gt;tacacs-server host 1.1.1.1 &lt;KEY info="" removed=""&gt;&lt;/KEY&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;To add additional information;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1) I want to keep the tacacs authentication when connecting to the Cisco 2811 terminal server via vty.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2) I want to eliminate the tacacs authentication when using any async connection from the terminal server to a given Cisco device (router, switch, etc..)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; (e.g. async 0/0/0 - 0/0/15).&amp;nbsp; This is where I am experiencing a tacacs authentication in attempting a connection to another Cisco devices console&amp;nbsp;&amp;nbsp;&amp;nbsp; port.&amp;nbsp; I know the tacacs authentication is coming from the terminal server, because I have tested with Cisco switches that have no configuration on them.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks,&lt;/P&gt;&lt;P&gt;james&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 25 Jan 2011 13:30:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618102#M291048</guid>
      <dc:creator>jawill47ec</dc:creator>
      <dc:date>2011-01-25T13:30:09Z</dc:date>
    </item>
    <item>
      <title>Re: How to eliminate a double login from acs?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618103#M291057</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi James,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Got it ...&lt;/P&gt;&lt;P&gt;Try this:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;no aaa authentication login default group tacacs+ line enable&lt;/P&gt;&lt;P&gt;aaa authentication login TEST group tacacs+ line enable&lt;/P&gt;&lt;P&gt;line vty 0 4&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; login authentication test&lt;/P&gt;&lt;P&gt;line vty 5 15&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; login authentication test&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know how it goes.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anisha&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;P.S.: Please mark this thread as answered if you feel your query is answered.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 25 Jan 2011 13:57:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618103#M291057</guid>
      <dc:creator>andamani</dc:creator>
      <dc:date>2011-01-25T13:57:00Z</dc:date>
    </item>
    <item>
      <title>Re: How to eliminate a double login from acs?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618104#M291065</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Anisha,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again for your response.&amp;nbsp; I performed the (2) actions from your post:&lt;/P&gt;&lt;P&gt;&amp;nbsp; 1) I removed the login default and replaced with login TEST&lt;/P&gt;&lt;P&gt;&amp;nbsp; 2) Updated line vty for 0 - 15 and applied login authentication test statement&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;No success.&amp;nbsp; The same scenario is continuing.&amp;nbsp; The tacacs login is still happening upon selecting any of the async lines (0/0/0 - 0/0/15).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks,&lt;/P&gt;&lt;P&gt;james&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 25 Jan 2011 17:03:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618104#M291065</guid>
      <dc:creator>jawill47ec</dc:creator>
      <dc:date>2011-01-25T17:03:38Z</dc:date>
    </item>
    <item>
      <title>Re: How to eliminate a double login from acs?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618105#M291067</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Sorry my bad.. the login authentication method-list is case sensitive.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Try&lt;/P&gt;&lt;P&gt;login authentication TEST instead of login authentication test&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Let me know how it goes.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Anisha&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 26 Jan 2011 02:22:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618105#M291067</guid>
      <dc:creator>andamani</dc:creator>
      <dc:date>2011-01-26T02:22:45Z</dc:date>
    </item>
    <item>
      <title>Re: How to eliminate a double login from acs?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618106#M291073</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Anisha,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I used the same case for the method list.&amp;nbsp; IOS gave a warning message when I attempted in using two different cases. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks,&lt;/P&gt;&lt;P&gt;james&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 26 Jan 2011 13:56:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618106#M291073</guid>
      <dc:creator>jawill47ec</dc:creator>
      <dc:date>2011-01-26T13:56:11Z</dc:date>
    </item>
    <item>
      <title>Re: How to eliminate a double login from acs?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618107#M291076</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi James,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If I understood you correctly you have two authentication requests: one generated by the terminal server and the second from the console of the device connected to the async line.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;My remote access days are long long gone but I remember a quite dirty hack...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;try to ignore vty authentication and focus on the async lines&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if i'm not mistaken the default setting for lines in "aaa new model" mode is "authentication login default" and is hidden from the config because it's the default. At least the documentation says so:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="pB1_Body1" style="padding-left: 30px;"&gt;This command is a per-line command used with AAA that specifies the name&amp;nbsp; of a list of AAA authentication methods to try at login. If no list is&amp;nbsp; specified, the default list is used (whether or not it is specified in&amp;nbsp; the command line).&lt;/P&gt;&lt;DIV class="caut1" style="padding-left: 30px;"&gt;&lt;IMG src="http://tools.cisco.com/i/templates/caut.gif" /&gt;&lt;/DIV&gt;&lt;HR class="Cautn1" style="padding-left: 30px;" /&gt;&lt;P style="padding-left: 30px;"&gt;&lt;A name="wp1047544"&gt;&lt;/A&gt;&lt;A name="wpmkr1047543"&gt;&lt;/A&gt;&lt;/P&gt;&lt;DIV class="pCautn" style="padding-left: 30px;"&gt;&lt;STRONG&gt;Caution &lt;/STRONG&gt;&lt;IMG border="0" height="2" src="http://tools.cisco.com/i/templates/blank.gif" width="6" /&gt;If you use a &lt;EM class="cArgument"&gt;list-name&lt;/EM&gt; value that was not configured with the &lt;STRONG class="cBold"&gt;aaa authentication login &lt;/STRONG&gt;command, you will disable login on this line.&lt;/DIV&gt;&lt;HR class="Cautn1" style="padding-left: 30px;" /&gt;&lt;P style="padding-left: 30px;"&gt;&lt;A name="wp1047545"&gt;&lt;/A&gt;&lt;/P&gt;&lt;P class="pB1_Body1" style="padding-left: 30px;"&gt;Entering the &lt;STRONG class="cBold"&gt;no&lt;/STRONG&gt; version of &lt;STRONG class="cCN_CmdName"&gt;login authentication&lt;/STRONG&gt; has the same effect as entering the command with the &lt;STRONG class="cKeyword"&gt;default&lt;/STRONG&gt; keyword.&lt;/P&gt;&lt;P style="padding-left: 30px;"&gt;&lt;A name="wp1047546"&gt;&lt;/A&gt;&lt;/P&gt;&lt;P class="pB1_Body1" style="padding-left: 30px;"&gt;Before issuing this command, create a list of authentication processes by using the global configuration &lt;STRONG class="cBold"&gt;aaa authentication login &lt;/STRONG&gt;command.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;even if you remove the aaa authentication list "default" it will not remove the aaa command from the async line. it is still there and hidden because it's default.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;create a specific aaa authentication list for no aaa:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authentication login NO_AAA none&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and apply it to the async lines&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;line async 0/0/something&lt;/P&gt;&lt;P&gt;&amp;nbsp; login authentication NO_AAA&lt;/P&gt;&lt;P&gt;&amp;nbsp; no exec&lt;/P&gt;&lt;P&gt;&amp;nbsp; transport input telnet&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;if that doesn't help, what's the detailed debug aaa authentication output? which part is generating the aaa request based on what?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hopefully that's a pointer... I have no router to test with&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rgds, MiKa&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PS: if you are "desperate" give it a try with rotary groups, I'm not sure whether connections to rotary groups are governed by vty aaa settings, i couldn't find any reference to that in the documentation.&lt;/P&gt;&lt;P&gt;put the async 0/0/1 in rotary 1 and connect to port 3001&lt;/P&gt;&lt;P&gt;put the async 0/0/2 in rotary 2 and connect to port 3002 ect...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PPS: if you are in the mood for playing around, IOS has the feature to access async lines in a reverse telneet fashion also via ssh&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 28 Jan 2011 05:40:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618107#M291076</guid>
      <dc:creator>m.kafka</dc:creator>
      <dc:date>2011-01-28T05:40:24Z</dc:date>
    </item>
    <item>
      <title>Re: How to eliminate a double login from acs?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618108#M291081</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Mika,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the post.&amp;nbsp; In trying the NO_AAA authentication list, it did not work. By adding the following;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authentication login NO_AAA none&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;line 0/2/0 0/2/15&lt;BR /&gt; session-timeout 20&lt;BR /&gt; exec-timeout 45 0&lt;BR /&gt; login authentication NO_AAA&lt;BR /&gt; no exec&lt;BR /&gt; transport input telnet&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; I turned on AAA authentication debugging and continue to see the default list being used.&amp;nbsp; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;AAA/BIND(00000124): Bind i/f Async0/2/0&lt;/P&gt;&lt;P&gt;AAA/AUTHEN/LOGIN (00000124): Pick method list 'default'&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Basically the NO_AAA authentication list is being ignored. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I haven't looked at your other 2 suggestions but will do so and post back.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks,&lt;/P&gt;&lt;P&gt;james&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 28 Jan 2011 21:30:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618108#M291081</guid>
      <dc:creator>jawill47ec</dc:creator>
      <dc:date>2011-01-28T21:30:06Z</dc:date>
    </item>
    <item>
      <title>Re: How to eliminate a double login from acs?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618109#M291087</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi James,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I see the following:&lt;/P&gt;&lt;PRE __jive_macro_name="quote" class="jive_text_macro jive_macro_quote"&gt; &lt;P&gt;AAA/BIND(00000124): &lt;SPAN style="color: #ff0000;"&gt;Bind i/f Async0/2/0&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;AAA/AUTHEN/LOGIN (00000124): Pick method list 'default'&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Basically the NO_AAA authentication list is being ignored. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;BR /&gt;&lt;/PRE&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;did you apply the config to the line or to the interface? Asyncs have&amp;nbsp; a sort of "dualism": interface async and the corresponding line&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;and honestly, my async/remote access days are really long ago, but maybe you should apply the NO_AAA to the async?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;rgds,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;mika&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 31 Jan 2011 11:23:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618109#M291087</guid>
      <dc:creator>m.kafka</dc:creator>
      <dc:date>2011-01-31T11:23:03Z</dc:date>
    </item>
    <item>
      <title>Re: How to eliminate a double login from acs?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618110#M291090</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Mika,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I applied the the NO_AAA list to the line.&amp;nbsp; The async interface does not have an option for login. &lt;/P&gt;&lt;P&gt;All L options are:&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; l2-filter&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; llc2&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; load-interval&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; logging &lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp; loopback &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The above is from IOS version 12.4.&amp;nbsp; I also looked for AAA commands but didn't see any;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; access-expression&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; arp&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; async (sub commands are default, dynamic and mode)&lt;/P&gt;&lt;P&gt;&amp;nbsp;&amp;nbsp; autodetect. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for the reply. &lt;/P&gt;&lt;P&gt;james&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 31 Jan 2011 13:35:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618110#M291090</guid>
      <dc:creator>jawill47ec</dc:creator>
      <dc:date>2011-01-31T13:35:36Z</dc:date>
    </item>
    <item>
      <title>Re: How to eliminate a double login from acs?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618111#M291097</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;james,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;what is the exact configuration of the lines?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;did you really enter:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&amp;nbsp; &lt;STRONG style="font-family: courier new,courier; "&gt;line 0/2/0 0/2/15&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;according to what I remember and the command description it should be:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;SPAN style="font-family: courier new,courier;"&gt; &lt;STRONG&gt;line [tty] [start] [end]&lt;/STRONG&gt;&lt;/SPAN&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; where start and end are integer numbers. you can verify the correct line number with "show line"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;what is your output for show run | begin line&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i have the feeling that somehow your config didn't reach the correct line&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 31 Jan 2011 14:46:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618111#M291097</guid>
      <dc:creator>m.kafka</dc:creator>
      <dc:date>2011-01-31T14:46:32Z</dc:date>
    </item>
    <item>
      <title>Re: How to eliminate a double login from acs?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618112#M291101</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Got it.&amp;nbsp; Applying the login for NO_AAA under the tty lines, 34 - 49 eliminated the login.&amp;nbsp; Thank you for all your time and knowledge.&amp;nbsp; I appreciate it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks,&lt;/P&gt;&lt;P&gt;james&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 31 Jan 2011 15:18:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618112#M291101</guid>
      <dc:creator>jawill47ec</dc:creator>
      <dc:date>2011-01-31T15:18:39Z</dc:date>
    </item>
    <item>
      <title>Re: How to eliminate a double login from acs?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618113#M291103</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;glad to help&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;MiKa&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 31 Jan 2011 21:06:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/1618113#M291103</guid>
      <dc:creator>m.kafka</dc:creator>
      <dc:date>2011-01-31T21:06:01Z</dc:date>
    </item>
    <item>
      <title>Re: How to eliminate a double login from acs?</title>
      <link>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/4316242#M566518</link>
      <description>&lt;P&gt;Yes this worked for me too on a 2600 Terminal Server I just built, the double logon was annoying but now solved ... many thanks to those on this thread!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;aaa authentication login default local&lt;BR /&gt;aaa authentication login NO_AAA_TSR none&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;line 33 48&lt;BR /&gt;exec-timeout 0 0&lt;BR /&gt;login authentication NO_AAA_TSR&lt;BR /&gt;no exec&lt;BR /&gt;transport input telnet&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Tue, 30 Mar 2021 15:11:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/how-to-eliminate-a-double-login-from-acs/m-p/4316242#M566518</guid>
      <dc:creator>markyd68a</dc:creator>
      <dc:date>2021-03-30T15:11:53Z</dc:date>
    </item>
  </channel>
</rss>

