<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Tacacs authentication issue in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/tacacs-authentication-issue/m-p/1143777#M349979</link>
    <description>&lt;P&gt;I have a C6509 with sup32 IOS based switch. I equally have tacacs authentication enables on the switch. But each time I telnet to the switch is brings the following:&lt;/P&gt;&lt;P&gt;Username: XXXXXXXX&lt;/P&gt;&lt;P&gt;Password: XXXXXXXX&lt;/P&gt;&lt;P&gt;Prompt&amp;gt;enable&lt;/P&gt;&lt;P&gt;User Access Verification&lt;/P&gt;&lt;P&gt;Username: XXXXXXXX&lt;/P&gt;&lt;P&gt;Password: XXXXXXXX&lt;/P&gt;&lt;P&gt;I do NOT like to have the second username. I expect after the enable command, I should just have be asked to key in my password and not asking me for a username again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is the version of IOS of the switch:&lt;/P&gt;&lt;P&gt;s3223-adventerprisek9_wan-mz.122-33.SXH3a.bin&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is the aaa config:&lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;aaa authentication login default group tacacs+ line enable&lt;/P&gt;&lt;P&gt;aaa authentication enable default group tacacs+ enable&lt;/P&gt;&lt;P&gt;aaa authorization exec default group tacacs+ if-authenticated&lt;/P&gt;&lt;P&gt;aaa authorization commands 15 default group tacacs+ if-authenticated&lt;/P&gt;&lt;P&gt;aaa accounting exec default start-stop group tacacs+&lt;/P&gt;&lt;P&gt;aaa accounting commands 15 default start-stop group tacacs+&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards,&lt;/P&gt;&lt;P&gt;Enrico&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 23:22:18 GMT</pubDate>
    <dc:creator>enricolopez</dc:creator>
    <dc:date>2019-03-10T23:22:18Z</dc:date>
    <item>
      <title>Tacacs authentication issue</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-authentication-issue/m-p/1143777#M349979</link>
      <description>&lt;P&gt;I have a C6509 with sup32 IOS based switch. I equally have tacacs authentication enables on the switch. But each time I telnet to the switch is brings the following:&lt;/P&gt;&lt;P&gt;Username: XXXXXXXX&lt;/P&gt;&lt;P&gt;Password: XXXXXXXX&lt;/P&gt;&lt;P&gt;Prompt&amp;gt;enable&lt;/P&gt;&lt;P&gt;User Access Verification&lt;/P&gt;&lt;P&gt;Username: XXXXXXXX&lt;/P&gt;&lt;P&gt;Password: XXXXXXXX&lt;/P&gt;&lt;P&gt;I do NOT like to have the second username. I expect after the enable command, I should just have be asked to key in my password and not asking me for a username again.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is the version of IOS of the switch:&lt;/P&gt;&lt;P&gt;s3223-adventerprisek9_wan-mz.122-33.SXH3a.bin&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here is the aaa config:&lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;aaa authentication login default group tacacs+ line enable&lt;/P&gt;&lt;P&gt;aaa authentication enable default group tacacs+ enable&lt;/P&gt;&lt;P&gt;aaa authorization exec default group tacacs+ if-authenticated&lt;/P&gt;&lt;P&gt;aaa authorization commands 15 default group tacacs+ if-authenticated&lt;/P&gt;&lt;P&gt;aaa accounting exec default start-stop group tacacs+&lt;/P&gt;&lt;P&gt;aaa accounting commands 15 default start-stop group tacacs+&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;regards,&lt;/P&gt;&lt;P&gt;Enrico&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 23:22:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-authentication-issue/m-p/1143777#M349979</guid>
      <dc:creator>enricolopez</dc:creator>
      <dc:date>2019-03-10T23:22:18Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs authentication issue</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-authentication-issue/m-p/1143778#M350015</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;you may be running into bug CSCsu21040. This is corrected in SXH4.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Mar 2009 04:44:39 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-authentication-issue/m-p/1143778#M350015</guid>
      <dc:creator>Daniel Laden</dc:creator>
      <dc:date>2009-03-05T04:44:39Z</dc:date>
    </item>
  </channel>
</rss>

