<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Tacacs authentication not working in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927448#M396193</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you are having Multiple Vlan in the Switch then also this problem will come.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;issue a command&lt;/P&gt;&lt;P&gt;"ip tacacs source-interface Vlan 1"&lt;/P&gt;&lt;P&gt;may this sloves your problem.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 11 Jul 2008 18:20:56 GMT</pubDate>
    <dc:creator>chaitu_kranthi</dc:creator>
    <dc:date>2008-07-11T18:20:56Z</dc:date>
    <item>
      <title>Tacacs authentication not working</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927441#M396186</link>
      <description>&lt;P&gt;i have AAA server , when i configure tacacs authentication on edge switch , no response from AAA  to the edge switch , but  for radius configuration it is working &lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 22:57:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927441#M396186</guid>
      <dc:creator>davidcruise</dc:creator>
      <dc:date>2019-03-10T22:57:54Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs authentication not working</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927442#M396187</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hani &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;You have not provided much for us to work with. Based on your description I would think that the problem might be one of these things:&lt;/P&gt;&lt;P&gt;- perhaps the switch configuration for the tacacs server is not correct?&lt;/P&gt;&lt;P&gt;- perhaps the switch configuration of the shared key with the tacacs server is not correct?&lt;/P&gt;&lt;P&gt;- perhaps the IP address chosen by the switch as the source for the tacacs request is not the same address that is configured on the tacacs server for this client.&lt;/P&gt;&lt;P&gt;- perhaps there is some error in the switch configuration for tacacs configuration.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I would suggest that a good place to start investigating this issue is in the logs of the tacacs server. Is the server seeing the authentication request? If so then there may be some error code that indicates what the problem is. If the server is not seeing the request then it point to a different kind of problem.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It would also be helpful to post the switch config so we can check for issues in the switch config.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rick&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Jul 2008 14:05:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927442#M396187</guid>
      <dc:creator>Richard Burts</dc:creator>
      <dc:date>2008-07-09T14:05:46Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs authentication not working</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927443#M396188</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;- i am sure of the tacacs configuration of the switch .&lt;/P&gt;&lt;P&gt;-the switch &amp;amp; ACS are reachable to each other&lt;/P&gt;&lt;P&gt;&amp;amp; no communication problem.&lt;/P&gt;&lt;P&gt;-for test i installed the acs on VMWare which resides on the ACS server itself, i give the VMWare ip address 192.168.170.12 , which is in the same range of ACS server ip address 192.168.170.11&lt;/P&gt;&lt;P&gt;&amp;amp; changed the Tacacs server ip address on the edge switch from 192.168.170.11  to 192.168.170.12 , &amp;amp; tacacs authentication worked  fine .&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Jul 2008 14:43:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927443#M396188</guid>
      <dc:creator>davidcruise</dc:creator>
      <dc:date>2008-07-09T14:43:34Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs authentication not working</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927444#M396189</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;David,&lt;/P&gt;&lt;P&gt;If incase this is acs appliance, then disable remote logging and see if that make tacacs authentication work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;~JG&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 09 Jul 2008 14:53:10 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927444#M396189</guid>
      <dc:creator>Jagdeep Gambhir</dc:creator>
      <dc:date>2008-07-09T14:53:10Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs authentication not working</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927445#M396190</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;no it is not acs appliance&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 11 Jul 2008 07:55:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927445#M396190</guid>
      <dc:creator>davidcruise</dc:creator>
      <dc:date>2008-07-11T07:55:04Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs authentication not working</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927446#M396191</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;According to what you said, it is reasonable&lt;/P&gt;&lt;P&gt;to say that the ACS server is having issues.&lt;/P&gt;&lt;P&gt;I would the following:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;1- from the switch telnet to the ACS server&lt;/P&gt;&lt;P&gt;via port 49 and see port 49 is listening:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;C3750#telnet 10.250.97.28 49&lt;/P&gt;&lt;P&gt;Trying ... Open&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;[Connection closed by foreign host]&lt;/P&gt;&lt;P&gt;C3750#&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;2- to confirm that tcp port 49 is listening &lt;/P&gt;&lt;P&gt;on the ACS server, do "netstat -an | findstr&lt;/P&gt;&lt;P&gt;49"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;3- I am guessing that the CSTacacs service &lt;/P&gt;&lt;P&gt;is not running but the CSRadius is.  Check&lt;/P&gt;&lt;P&gt;the Windows service and restart CSTacacs&lt;/P&gt;&lt;P&gt;service and see if you can restart it.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 11 Jul 2008 10:23:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927446#M396191</guid>
      <dc:creator>cisco24x7</dc:creator>
      <dc:date>2008-07-11T10:23:16Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs authentication not working</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927447#M396192</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Other then that also check how aaa server is setup i.e Go to acs---&amp;gt;network configuration----&amp;gt;AAA server----&amp;gt; Make sure it is set up as "Cisco Secure ACS" and not Radius.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;~JG&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 11 Jul 2008 11:48:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927447#M396192</guid>
      <dc:creator>Jagdeep Gambhir</dc:creator>
      <dc:date>2008-07-11T11:48:06Z</dc:date>
    </item>
    <item>
      <title>Re: Tacacs authentication not working</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927448#M396193</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you are having Multiple Vlan in the Switch then also this problem will come.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;issue a command&lt;/P&gt;&lt;P&gt;"ip tacacs source-interface Vlan 1"&lt;/P&gt;&lt;P&gt;may this sloves your problem.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 11 Jul 2008 18:20:56 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-authentication-not-working/m-p/927448#M396193</guid>
      <dc:creator>chaitu_kranthi</dc:creator>
      <dc:date>2008-07-11T18:20:56Z</dc:date>
    </item>
  </channel>
</rss>

