<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: User Authentication with 2800 router in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/user-authentication-with-2800-router/m-p/1449461#M313209</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;here is the output&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;when i put tacacs password it does'nt accepts but when i put local password it accepts.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Press RETURN to get started.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;*May 11 15:44:07.066: TPLUS: Queuing AAA Authentication request 19 for processing&lt;BR /&gt;*May 11 15:44:07.066: TPLUS: processing authentication start request id 19&lt;BR /&gt;*May 11 15:44:07.066: TPLUS: Authentication start packet created for 19()&lt;BR /&gt;*May 11 15:44:07.066: TPLUS: Using server 192.168.10.3&lt;BR /&gt;*May 11 15:44:07.070: TPLUS(00000013)/0/NB_WAIT/464ED0F8: Started 2 sec timeout&lt;BR /&gt;*May 11 15:44:07.070: TPLUS(00000013)/0/NB_WAIT: socket event 2&lt;BR /&gt;*May 11 15:44:07.070: TPLUS(00000013)/0/NB_WAIT: wrote entire 29 bytes request&lt;BR /&gt;*May 11 15:44:07.070: TPLUS(00000013)/0/READ: socket event 1&lt;BR /&gt;*May 11 15:44:07.070: TPLUS(00000013)/0/READ: Would block while reading&lt;BR /&gt;*May 11 15:44:07.090: TPLUS(00000013)/0/READ: socket event 1&lt;BR /&gt;*May 11 15:44:07.090: TPLUS(00000013)/0/READ: read 0 bytes&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;User Access Verification&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Username: &lt;BR /&gt;*May 11 15:44:09.070: TPLUS(00000013)/0/READ/464ED0F8: timed out&lt;BR /&gt;*May 11 15:44:09.070: TPLUS: Authentication start packet created for 19()&lt;BR /&gt;*May 11 15:44:09.070: TPLUS(00000013)/0/READ/464ED0F8: timed out, clean up&lt;BR /&gt;*May 11 15:44:09.070: TPLUS(00000013)/0/464ED0F8: Processing the reply packet john&lt;BR /&gt;Password:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;% Authentication failed&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Username: &lt;BR /&gt;*May 11 15:44:33.670: TPLUS: Queuing AAA Authentication request 19 for processing&lt;BR /&gt;*May 11 15:44:33.670: TPLUS: processing authentication start request id 19&lt;BR /&gt;*May 11 15:44:33.670: TPLUS: Authentication start packet created for 19()&lt;BR /&gt;*May 11 15:44:33.670: TPLUS: Using server 192.168.10.3&lt;BR /&gt;*May 11 15:44:33.670: TPLUS(00000013)/0/NB_WAIT/460B0F24: Started 2 sec timeout&lt;BR /&gt;*May 11 15:44:33.674: TPLUS(00000013)/0/NB_WAIT: socket event 2&lt;BR /&gt;*May 11 15:44:33.674: TPLUS(00000013)/0/NB_WAIT: wrote entire 29 bytes request&lt;BR /&gt;*May 11 15:44:33.674: TPLUS(00000013)/0/READ: socket event 1&lt;BR /&gt;*May 11 15:44:33.674: TPLUS(00000013)/0/READ: Would block while reading&lt;BR /&gt;*May 11 15:44:33.678: TPLUS(00000013)/0/READ: socket event 1&lt;BR /&gt;*May 11 15:44:33.678: TPLUS(00000013)/0/READ: errno 254&lt;BR /&gt;*May 11 15:44:33.678: TPLUS(00000013)/0/460B0F24: Processing the reply packet john&lt;BR /&gt;Password:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ACS-Router&amp;gt;en&lt;BR /&gt;Password: &lt;BR /&gt;ACS-Router#&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 11 May 2010 15:41:07 GMT</pubDate>
    <dc:creator>estelamathew</dc:creator>
    <dc:date>2010-05-11T15:41:07Z</dc:date>
    <item>
      <title>User Authentication with 2800 router</title>
      <link>https://community.cisco.com/t5/network-access-control/user-authentication-with-2800-router/m-p/1449459#M313207</link>
      <description>&lt;P&gt;hello Experts,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;Press RETURN to get started.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;*May 11 15:04:18.063: AAA/BIND(00000010): Bind i/f&amp;nbsp; &lt;BR /&gt;*May 11 15:04:18.063: AAA/AUTHEN/LOGIN (00000010): Pick method list '123'&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;User Access Verification&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Username: john&lt;BR /&gt;Password:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ACS-Router&amp;gt;en&lt;BR /&gt;Password: &lt;BR /&gt;*May 11 15:04:41.935: AAA: parse name=tty0 idb type=-1 tty=-1&lt;BR /&gt;*May 11 15:04:41.935: AAA: name=tty0 flags=0x11 type=4 shelf=0 slot=0 adapter=0 port=0 channel=0&lt;BR /&gt;*May 11 15:04:41.935: AAA/MEMORY: create_user (0x469AA7F4) user='john' ruser='NULL' ds0=0 port='tty0' rem_addr='async' authen_type=ASCII service=ENABLE priv=15 initial_task_id='0', vrf= (id=0)&lt;BR /&gt;*May 11 15:04:41.935: AAA/AUTHEN/START (4129385217): port='tty0' list='' action=LOGIN service=ENABLE&lt;BR /&gt;*May 11 15:04:41.935: AAA/AUTHEN/START (4129385217): console enable - default to enable password (if any)&lt;BR /&gt;*May 11 15:04:41.935: AAA/AUTHEN/START (4129385217): Method=ENABLE&lt;BR /&gt;*May 11 15:04:41.935: AAA/AUTHEN(4129385217): Status=GETPASS&lt;BR /&gt;ACS-Router#&lt;BR /&gt;*May 11 15:04:49.099: AAA/AUTHEN/CONT (4129385217): continue_login (user='(undef)')&lt;BR /&gt;*May 11 15:04:49.099: AAA/AUTHEN(4129385217): Status=GETPASS&lt;BR /&gt;*May 11 15:04:49.099: AAA/AUTHEN/CONT (4129385217): Method=ENABLE&lt;BR /&gt;*May 11 15:04:49.107: AAA/AUTHEN(4129385217): Status=PASS&lt;BR /&gt;*May 11 15:04:49.107: AAA/MEMORY: free_user (0x469AA7F4) user='NULL' ruser='NULL' port='tty0' rem_addr='async' authen_type=ASCII service=ENABLE priv=15 vrf= (id=0)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The output is from the console 2800 router, i m trying to authenticate a user john from the ACS server but i m not sure it is authenticating or not by the output above, when i specify a different password in the ACS and the router it does'nt accept ACS password rather it takes local&amp;nbsp; password configured for john.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;sh run for router 2800:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ACS-Router#sh running-config &lt;BR /&gt;Building configuration...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Current configuration : 1141 bytes&lt;BR /&gt;!&lt;BR /&gt;version 12.4&lt;BR /&gt;service timestamps debug datetime msec&lt;BR /&gt;service timestamps log datetime msec&lt;BR /&gt;no service password-encryption&lt;BR /&gt;!&lt;BR /&gt;hostname ACS-Router&lt;BR /&gt;!&lt;BR /&gt;boot-start-marker&lt;BR /&gt;boot system flash c2800nm-ipvoicek9-mz.151-1.T.bin&lt;BR /&gt;boot-end-marker&lt;BR /&gt;!&lt;BR /&gt;logging message-counter syslog&lt;BR /&gt;enable secret 5 $1$6MYC$v0SoHopUNgCSXx08iEfcU0&lt;BR /&gt;!&lt;BR /&gt;aaa new-model&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;aaa authentication login 123 group tacacs+ local&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;aaa session-id common&lt;BR /&gt;!&lt;BR /&gt;dot11 syslog&lt;BR /&gt;ip source-route&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;ip cef&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;no ip domain lookup&lt;BR /&gt;!&lt;BR /&gt;multilink bundle-name authenticated&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;username john password 0 cisco12345&lt;BR /&gt;archive&lt;BR /&gt; log config&lt;BR /&gt;&amp;nbsp; hidekeys&lt;BR /&gt;! &lt;BR /&gt;!&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/0&lt;BR /&gt; no ip address&lt;BR /&gt; duplex auto&lt;BR /&gt; speed auto&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/0.1&lt;BR /&gt; encapsulation dot1Q 1 native&lt;BR /&gt; ip address 192.168.10.1 255.255.255.0&lt;BR /&gt;!&lt;BR /&gt;interface FastEthernet0/1&lt;BR /&gt; no ip address&lt;BR /&gt; shutdown&lt;BR /&gt; duplex auto&lt;BR /&gt; speed auto&lt;BR /&gt;!&lt;BR /&gt;ip forward-protocol nd&lt;BR /&gt;no ip http server&lt;BR /&gt;no ip http secure-server&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;tacacs-server host 192.168.10.3 port 49 timeout 2 key cisco12345&lt;BR /&gt;!&lt;BR /&gt;control-plane&lt;BR /&gt;!&lt;BR /&gt;!&lt;BR /&gt;line con 0&lt;BR /&gt; login authentication 123&lt;BR /&gt;line aux 0&lt;BR /&gt;line vty 0 4&lt;BR /&gt; login authentication 123&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;BUT&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;when the same configuration i did with the 2960 switch it is working fine for the user,It is accepting different password for the ACS and the local when i disconnect the ACS from the LAN.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can anybody tellwhat i m missing here.????&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 00:07:53 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/user-authentication-with-2800-router/m-p/1449459#M313207</guid>
      <dc:creator>estelamathew</dc:creator>
      <dc:date>2019-03-11T00:07:53Z</dc:date>
    </item>
    <item>
      <title>Re: User Authentication with 2800 router</title>
      <link>https://community.cisco.com/t5/network-access-control/user-authentication-with-2800-router/m-p/1449460#M313208</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Enable:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;debug tacacs&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then try again, and post the debug output.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 May 2010 15:28:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/user-authentication-with-2800-router/m-p/1449460#M313208</guid>
      <dc:creator>Javier Henderson</dc:creator>
      <dc:date>2010-05-11T15:28:39Z</dc:date>
    </item>
    <item>
      <title>Re: User Authentication with 2800 router</title>
      <link>https://community.cisco.com/t5/network-access-control/user-authentication-with-2800-router/m-p/1449461#M313209</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;here is the output&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;when i put tacacs password it does'nt accepts but when i put local password it accepts.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Press RETURN to get started.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;*May 11 15:44:07.066: TPLUS: Queuing AAA Authentication request 19 for processing&lt;BR /&gt;*May 11 15:44:07.066: TPLUS: processing authentication start request id 19&lt;BR /&gt;*May 11 15:44:07.066: TPLUS: Authentication start packet created for 19()&lt;BR /&gt;*May 11 15:44:07.066: TPLUS: Using server 192.168.10.3&lt;BR /&gt;*May 11 15:44:07.070: TPLUS(00000013)/0/NB_WAIT/464ED0F8: Started 2 sec timeout&lt;BR /&gt;*May 11 15:44:07.070: TPLUS(00000013)/0/NB_WAIT: socket event 2&lt;BR /&gt;*May 11 15:44:07.070: TPLUS(00000013)/0/NB_WAIT: wrote entire 29 bytes request&lt;BR /&gt;*May 11 15:44:07.070: TPLUS(00000013)/0/READ: socket event 1&lt;BR /&gt;*May 11 15:44:07.070: TPLUS(00000013)/0/READ: Would block while reading&lt;BR /&gt;*May 11 15:44:07.090: TPLUS(00000013)/0/READ: socket event 1&lt;BR /&gt;*May 11 15:44:07.090: TPLUS(00000013)/0/READ: read 0 bytes&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;User Access Verification&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Username: &lt;BR /&gt;*May 11 15:44:09.070: TPLUS(00000013)/0/READ/464ED0F8: timed out&lt;BR /&gt;*May 11 15:44:09.070: TPLUS: Authentication start packet created for 19()&lt;BR /&gt;*May 11 15:44:09.070: TPLUS(00000013)/0/READ/464ED0F8: timed out, clean up&lt;BR /&gt;*May 11 15:44:09.070: TPLUS(00000013)/0/464ED0F8: Processing the reply packet john&lt;BR /&gt;Password:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;% Authentication failed&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Username: &lt;BR /&gt;*May 11 15:44:33.670: TPLUS: Queuing AAA Authentication request 19 for processing&lt;BR /&gt;*May 11 15:44:33.670: TPLUS: processing authentication start request id 19&lt;BR /&gt;*May 11 15:44:33.670: TPLUS: Authentication start packet created for 19()&lt;BR /&gt;*May 11 15:44:33.670: TPLUS: Using server 192.168.10.3&lt;BR /&gt;*May 11 15:44:33.670: TPLUS(00000013)/0/NB_WAIT/460B0F24: Started 2 sec timeout&lt;BR /&gt;*May 11 15:44:33.674: TPLUS(00000013)/0/NB_WAIT: socket event 2&lt;BR /&gt;*May 11 15:44:33.674: TPLUS(00000013)/0/NB_WAIT: wrote entire 29 bytes request&lt;BR /&gt;*May 11 15:44:33.674: TPLUS(00000013)/0/READ: socket event 1&lt;BR /&gt;*May 11 15:44:33.674: TPLUS(00000013)/0/READ: Would block while reading&lt;BR /&gt;*May 11 15:44:33.678: TPLUS(00000013)/0/READ: socket event 1&lt;BR /&gt;*May 11 15:44:33.678: TPLUS(00000013)/0/READ: errno 254&lt;BR /&gt;*May 11 15:44:33.678: TPLUS(00000013)/0/460B0F24: Processing the reply packet john&lt;BR /&gt;Password:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ACS-Router&amp;gt;en&lt;BR /&gt;Password: &lt;BR /&gt;ACS-Router#&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 May 2010 15:41:07 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/user-authentication-with-2800-router/m-p/1449461#M313209</guid>
      <dc:creator>estelamathew</dc:creator>
      <dc:date>2010-05-11T15:41:07Z</dc:date>
    </item>
    <item>
      <title>Re: User Authentication with 2800 router</title>
      <link>https://community.cisco.com/t5/network-access-control/user-authentication-with-2800-router/m-p/1449462#M313210</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The followiing:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;*May 11 15:44:33.678: TPLUS(00000013)/0/READ: errno 254&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Suggests a mismatched secret between the 2800 and the TACACS+ server.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 May 2010 15:45:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/user-authentication-with-2800-router/m-p/1449462#M313210</guid>
      <dc:creator>Javier Henderson</dc:creator>
      <dc:date>2010-05-11T15:45:51Z</dc:date>
    </item>
    <item>
      <title>Re: User Authentication with 2800 router</title>
      <link>https://community.cisco.com/t5/network-access-control/user-authentication-with-2800-router/m-p/1449463#M313211</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello dear,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;yes i went once more to chk b4 ur mail ,i found it,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;it was a silly mistake,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for ur reply.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 11 May 2010 15:50:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/user-authentication-with-2800-router/m-p/1449463#M313211</guid>
      <dc:creator>estelamathew</dc:creator>
      <dc:date>2010-05-11T15:50:44Z</dc:date>
    </item>
  </channel>
</rss>

