<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic VPNc 3000 Internal AND Radius authentication server problem in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/vpnc-3000-internal-and-radius-authentication-server-problem/m-p/121453#M3347</link>
    <description>&lt;P&gt;Hello All!&lt;/P&gt;&lt;P&gt;      I have an ACS where I authenticate VPN user using Cisco vpn client. We tried PPTP with a group and a user local (internal) on the VPN concentrator and it doesn`t authenticate correctly...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I change the order of my authentication servers from RADIUS, INTERNAL to INTERNAL, RADIUS and the local authentication worked...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is that a bug? In the doc it says "the first server of a given type is the primary and all other are backup"  From my understanding it shoud work!!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Release 3.6.3 is used&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ch&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 18:07:24 GMT</pubDate>
    <dc:creator>mlheureux</dc:creator>
    <dc:date>2020-02-21T18:07:24Z</dc:date>
    <item>
      <title>VPNc 3000 Internal AND Radius authentication server problem</title>
      <link>https://community.cisco.com/t5/network-access-control/vpnc-3000-internal-and-radius-authentication-server-problem/m-p/121453#M3347</link>
      <description>&lt;P&gt;Hello All!&lt;/P&gt;&lt;P&gt;      I have an ACS where I authenticate VPN user using Cisco vpn client. We tried PPTP with a group and a user local (internal) on the VPN concentrator and it doesn`t authenticate correctly...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I change the order of my authentication servers from RADIUS, INTERNAL to INTERNAL, RADIUS and the local authentication worked...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is that a bug? In the doc it says "the first server of a given type is the primary and all other are backup"  From my understanding it shoud work!!!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Release 3.6.3 is used&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Ch&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 18:07:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/vpnc-3000-internal-and-radius-authentication-server-problem/m-p/121453#M3347</guid>
      <dc:creator>mlheureux</dc:creator>
      <dc:date>2020-02-21T18:07:24Z</dc:date>
    </item>
    <item>
      <title>Re: VPNc 3000 Internal AND Radius authentication server problem</title>
      <link>https://community.cisco.com/t5/network-access-control/vpnc-3000-internal-and-radius-authentication-server-problem/m-p/121454#M3348</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;With PPTP the first server listed in the Authentication Servers list is the one that's used.  You can't define this per group cause there's no concept of a group in PPTP unlike when you use the VPN Client.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As for why it failed when using Radius, check the PPTP Encryption (MPPE) settings on the client.  If they're "required", then you need to return encryption attributes from the Raidus sever for it to authenticate properly, otherwise the connection will be dropped.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;See the following for details:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/warp/public/471/pptp_vpn3k.html" target="_blank"&gt;http://www.cisco.com/warp/public/471/pptp_vpn3k.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/warp/public/471/altigacsnt.html" target="_blank"&gt;http://www.cisco.com/warp/public/471/altigacsnt.html&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 04 Jul 2003 05:54:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/vpnc-3000-internal-and-radius-authentication-server-problem/m-p/121454#M3348</guid>
      <dc:creator>gfullage</dc:creator>
      <dc:date>2003-07-04T05:54:10Z</dc:date>
    </item>
  </channel>
</rss>

