<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Acs 4.2 issue in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-4-2-issue/m-p/1364174#M303743</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;anandkumar,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is the deal, your configuration on the network device is correct i dont know why you are getting fail attempts. Here is what you can do to troubleshoot it:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Try a&amp;nbsp; debug tacacs authentication, log the debug then go over it to see what is causing it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Since this config looks fine to me i guess your problem may be on the ACS, check your tacacs key, make sure the device is added to the ACS, make sure the users are correctly added on the ACS .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm sorry i can help you more&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 15 Apr 2010 13:04:08 GMT</pubDate>
    <dc:creator>Rodrigo Gurriti</dc:creator>
    <dc:date>2010-04-15T13:04:08Z</dc:date>
    <item>
      <title>Acs 4.2 issue</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-4-2-issue/m-p/1364173#M303742</link>
      <description>&lt;P&gt;Dear all,&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt; i have given the below configuration in Device, &lt;BR /&gt;but no fail attempts in&amp;nbsp; nacs Server &amp;amp; authentication is failure&lt;BR /&gt;how can it be sorted&amp;nbsp; out&lt;/STRONG&gt;&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;aaa new-model&lt;/STRONG&gt;&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;aaa group server tacacs+ NACS_Group1&lt;BR /&gt; server 10.193.212.94&lt;BR /&gt; server 10.193.212.247&lt;BR /&gt;!&lt;BR /&gt;aaa authentication &lt;STRONG&gt;login default group&lt;/STRONG&gt; NACS_Group1 local&lt;BR /&gt;aaa authentication login prov none&lt;BR /&gt;aaa authentication enable default group NACS_Group1 enable&lt;BR /&gt;aaa authorization config-commands&lt;BR /&gt;aaa authorization exec default group NACS_Group1 if-authenticated&lt;BR /&gt;aaa authorization exec NACS_Group1 group tacacs+ local&lt;BR /&gt;aaa authorization commands 1 default group tacacs+ if-authenticated&lt;BR /&gt;aaa authorization commands 15 default group tacacs+ if-authenticated&lt;BR /&gt;aaa accounting commands 1 defaultgroup start-stop group tacacs+&lt;BR /&gt;aaa accounting commands 15 defaultgroup start-stop group tacacs+&lt;BR /&gt;!&lt;BR /&gt;aaa session-id common&lt;/P&gt;&lt;P&gt;tacacs-server host 10.193.212.94 timeout 5&lt;BR /&gt;tacacs-server host 10.193.212.247 timeout 5&lt;BR /&gt;tacacs-server directed-request&lt;BR /&gt;tacacs-server key 7 110A1016141D5A5E57&lt;/P&gt;&lt;P&gt;&lt;STRONG&gt;line vty 0 4&lt;BR /&gt;login authentication default&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 00:03:49 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-4-2-issue/m-p/1364173#M303742</guid>
      <dc:creator>anandkumar.cisco</dc:creator>
      <dc:date>2019-03-11T00:03:49Z</dc:date>
    </item>
    <item>
      <title>Re: Acs 4.2 issue</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-4-2-issue/m-p/1364174#M303743</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;anandkumar,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is the deal, your configuration on the network device is correct i dont know why you are getting fail attempts. Here is what you can do to troubleshoot it:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Try a&amp;nbsp; debug tacacs authentication, log the debug then go over it to see what is causing it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Since this config looks fine to me i guess your problem may be on the ACS, check your tacacs key, make sure the device is added to the ACS, make sure the users are correctly added on the ACS .&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I'm sorry i can help you more&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 15 Apr 2010 13:04:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-4-2-issue/m-p/1364174#M303743</guid>
      <dc:creator>Rodrigo Gurriti</dc:creator>
      <dc:date>2010-04-15T13:04:08Z</dc:date>
    </item>
  </channel>
</rss>

