<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Microsoft IAS 2003 login authentication issues in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083268#M354921</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Also as you are using authorization.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;debug aaa authentication&lt;/P&gt;&lt;P&gt;debug aaa authorization&lt;/P&gt;&lt;P&gt;debug radius&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Prem&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Wed, 17 Sep 2008 22:01:31 GMT</pubDate>
    <dc:creator>Premdeep Banga</dc:creator>
    <dc:date>2008-09-17T22:01:31Z</dc:date>
    <item>
      <title>Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083262#M354915</link>
      <description>&lt;P&gt;I have searched and searched for an answer to this, but noghting seems to be working.  I have IAS authenticating users for login authentication on a 1230ag AP and a 2950 switch using Active Directory for the user database.  I have it working just fine except for the fact that I can't get the device and IAS to send the user directly to enable mode even after adding the "shell:priv-lvl=15" vendor attribute to the access policy.  Will someone post the steps that have worked for them that allows AAA login authentication with local users database for a backup?  Any help would be much appreciated.  I should add that it only allows me level 1 access on the console, telnet, and web interface (on the AP) and I did a debug on the AAA process and though I didn't copy it to a txt file it looked as though the "shell:priv-lvl=15" was reaching the AP and the switch.  Thanks.&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 23:05:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083262#M354915</guid>
      <dc:creator>sloov187</dc:creator>
      <dc:date>2019-03-10T23:05:18Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083263#M354916</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Make sure you have following commands on switch/AP&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;username &lt;USERNAME&gt; privilege 15 password &lt;PASSWORD&gt;&lt;/PASSWORD&gt;&lt;/USERNAME&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;radius-server host &lt;IP-IAS&gt; key &lt;SHAREDKEY&gt;&lt;/SHAREDKEY&gt;&lt;/IP-IAS&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authentication login default group radius local&lt;/P&gt;&lt;P&gt;aaa authorization exec default group radius local&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On you IAS server,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Choose the Service Type as Administrative. (Under Advanced Tab for a Radius Access Policy)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Prem&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate if it helps!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 15 Sep 2008 22:08:13 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083263#M354916</guid>
      <dc:creator>Premdeep Banga</dc:creator>
      <dc:date>2008-09-15T22:08:13Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083264#M354917</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;So instead of using the Service Type of Login I need to use the Service Type of Administrative?  Do I still need to have the Cisco VA of "shell:priv-lvl=15" in the access policy?  Also do I leave all of the RADIUS types in IAS set to Cisco or Radius Standard?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Sep 2008 00:23:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083264#M354917</guid>
      <dc:creator>sloov187</dc:creator>
      <dc:date>2008-09-16T00:23:58Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083265#M354918</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Have you tried this yet ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You need Service type administrative. You can use cisco av pair to later on pass the custom/required privilege level, else it will automatically get privilege level 15.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Prem&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate if it helps!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 16 Sep 2008 10:46:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083265#M354918</guid>
      <dc:creator>Premdeep Banga</dc:creator>
      <dc:date>2008-09-16T10:46:24Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083266#M354919</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;After following your directions the following attached documents on the AAA debug and the telnet screen are what I get.  Basically it looks like by using this method my request doesn't even reach the IAS sever even though I know I have the IP and the shared secret in properly.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 17 Sep 2008 20:54:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083266#M354919</guid>
      <dc:creator>sloov187</dc:creator>
      <dc:date>2008-09-17T20:54:35Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083267#M354920</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;"debug aaa authentication" wont help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You need to get "debug radius"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Prem&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 17 Sep 2008 22:01:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083267#M354920</guid>
      <dc:creator>Premdeep Banga</dc:creator>
      <dc:date>2008-09-17T22:01:00Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083268#M354921</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Also as you are using authorization.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;debug aaa authentication&lt;/P&gt;&lt;P&gt;debug aaa authorization&lt;/P&gt;&lt;P&gt;debug radius&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Prem&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 17 Sep 2008 22:01:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083268#M354921</guid>
      <dc:creator>Premdeep Banga</dc:creator>
      <dc:date>2008-09-17T22:01:31Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083269#M354922</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes I did run a debug on all three and that was the output.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Sep 2008 02:03:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083269#M354922</guid>
      <dc:creator>sloov187</dc:creator>
      <dc:date>2008-09-18T02:03:48Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083270#M354923</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I get it, you have "Permanent" list applied on the device.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Add following command. If you make some changes in your configuration. I request you to also provide the configuration changes.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;add the commands,&lt;/P&gt;&lt;P&gt;username &lt;USERNAME&gt; privilege 15 password &lt;PASSWORD&gt;&lt;/PASSWORD&gt;&lt;/USERNAME&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;radius-server host &lt;MS-IAS&gt; key &lt;SHAREDKEY&gt;&lt;/SHAREDKEY&gt;&lt;/MS-IAS&gt;&lt;/P&gt;&lt;P&gt;aaa authentication login default group radius local&lt;/P&gt;&lt;P&gt;aaa authorization exec default group radius local&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;line vty 0 4 or line vty 0 15&lt;/P&gt;&lt;P&gt;login authentication default&lt;/P&gt;&lt;P&gt;authorization exec default&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Prem&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate if it helps!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 18 Sep 2008 10:23:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083270#M354923</guid>
      <dc:creator>Premdeep Banga</dc:creator>
      <dc:date>2008-09-18T10:23:55Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083271#M354924</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks Prem!  That works perfectly.  When I was trying it before I forgot to put the "authorization exec default" command in.  Three more questions for you:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1.  Using this method does it default back to the local list if the RADIUS server is unavailable?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2.  How do I apply these same rules to the HTTP web interface?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3.  What commands do I use if I want to set up a user group that I want to give a privilege level of something other than 15 to?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks again!&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Sep 2008 17:14:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083271#M354924</guid>
      <dc:creator>sloov187</dc:creator>
      <dc:date>2008-09-19T17:14:42Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083272#M354925</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;1. Using this method does it default back to the local list if the RADIUS server is unavailable?&lt;/P&gt;&lt;P&gt;Answer: Yes, using the local username/password configured on the device.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2. How do I apply these same rules to the HTTP web interface? &lt;/P&gt;&lt;P&gt;Answer :&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ip http server&lt;/P&gt;&lt;P&gt;ip http authentication aaa&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3. What commands do I use if I want to set up a user group that I want to give a privilege level of something other than 15 to?&lt;/P&gt;&lt;P&gt;Answer : &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;[Edit]Using cisco-av-pair i.e. shell:priv-lvl=n;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Where , n is the privilege level.&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Prem&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate if it helps!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Sep 2008 17:27:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083272#M354925</guid>
      <dc:creator>Premdeep Banga</dc:creator>
      <dc:date>2008-09-19T17:27:16Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083273#M354926</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Do I leave the service type as Administrative for the different privilege levels or do I change it back to Login?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Sep 2008 17:54:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083273#M354926</guid>
      <dc:creator>sloov187</dc:creator>
      <dc:date>2008-09-19T17:54:15Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083274#M354927</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Leave it to administrative&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Sep 2008 17:55:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083274#M354927</guid>
      <dc:creator>Premdeep Banga</dc:creator>
      <dc:date>2008-09-19T17:55:41Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083275#M354928</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for your help it has been much appreciated.  I'll rate this post.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Sep 2008 17:57:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083275#M354928</guid>
      <dc:creator>sloov187</dc:creator>
      <dc:date>2008-09-19T17:57:44Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083276#M354929</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Oops one more thing.  How do I set it up to authenticate users in SDM?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Sep 2008 22:13:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083276#M354929</guid>
      <dc:creator>sloov187</dc:creator>
      <dc:date>2008-09-19T22:13:04Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083277#M354930</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ip http server&lt;/P&gt;&lt;P&gt;ip http authentication aaa&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Should take care of it.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 19 Sep 2008 22:14:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083277#M354930</guid>
      <dc:creator>Premdeep Banga</dc:creator>
      <dc:date>2008-09-19T22:14:18Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083278#M354931</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Another question for you Prem.  I'd like to keep the Console port to use local username and password.  If I already have the console setup to use AAA, how do I get it to go back to strictly using the local list?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Sep 2008 19:22:32 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083278#M354931</guid>
      <dc:creator>sloov187</dc:creator>
      <dc:date>2008-09-22T19:22:32Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083279#M354932</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;aaa authentication login CON local&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;line con 0&lt;/P&gt;&lt;P&gt; login authentication CON&lt;/P&gt;&lt;P&gt; privilege level 15&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;Prem&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Please rate if it helps!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 22 Sep 2008 19:23:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083279#M354932</guid>
      <dc:creator>Premdeep Banga</dc:creator>
      <dc:date>2008-09-22T19:23:58Z</dc:date>
    </item>
    <item>
      <title>Re: Microsoft IAS 2003 login authentication issues</title>
      <link>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083280#M354933</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Prem,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The switches and access points are all working great, but now I am having issues with SDM on my routers.  SDM works fine using RADIUS as long as I leave the console port set to authenticate through AAA, but as soon as I set it to use the local login CON profile I can still get in through the vty and console interfaces using RADIUS or local credentials, but SDM will not accept the local username and password or the AD credentials through RADIUS.  My question is, what do the console port settings have to do with the ip http server settings?  Why will SDM only authenticate when I have the console port set AAA?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 04 Oct 2008 17:50:12 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/microsoft-ias-2003-login-authentication-issues/m-p/1083280#M354933</guid>
      <dc:creator>sloov187</dc:creator>
      <dc:date>2008-10-04T17:50:12Z</dc:date>
    </item>
  </channel>
</rss>

