<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic AAA not authenticating to Win Radius server in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/aaa-not-authenticating-to-win-radius-server/m-p/617499#M421828</link>
    <description>&lt;P&gt;I have a client that is trying to use a Windows ISA server as a RADIUS server to authenticate PPTP connections to a 515e. I know that the VPN connection is working since I can set it up to use local auth and it works just fine. When I set up radius the clients get an error that says that it did not get a response from the server (I think it was 761).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The relevant config and the debug ppp negotiation and debug ppp error is below, I am looking to see if there is a way to test the RADIUS server other than having someone try to connect. Or if anyone has had any experience setting these up.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa-server RADIUS protocol radius&lt;/P&gt;&lt;P&gt;aaa-server RADIUS max-failed-attempts 3&lt;/P&gt;&lt;P&gt;aaa-server RADIUS deadtime 10&lt;/P&gt;&lt;P&gt;aaa-server RadiusServers protocol radius&lt;/P&gt;&lt;P&gt;aaa-server RadiusServers max-failed-attempts 3&lt;/P&gt;&lt;P&gt;aaa-server RadiusServers deadtime 10&lt;/P&gt;&lt;P&gt;aaa-server RadiusServers (inside) host ********** ***KEY*** timeout 10&lt;/P&gt;&lt;P&gt;vpdn group VPN accept dialin pptp&lt;/P&gt;&lt;P&gt;vpdn group VPN ppp authentication pap&lt;/P&gt;&lt;P&gt;vpdn group VPN ppp authentication chap&lt;/P&gt;&lt;P&gt;vpdn group VPN ppp authentication mschap&lt;/P&gt;&lt;P&gt;vpdn group VPN ppp encryption mppe 40&lt;/P&gt;&lt;P&gt;vpdn group VPN client configuration address local VPN-Clients&lt;/P&gt;&lt;P&gt;vpdn group VPN client configuration dns ***********&lt;/P&gt;&lt;P&gt;vpdn group VPN client authentication aaa RadiusServers&lt;/P&gt;&lt;P&gt;vpdn group VPN pptp echo 60&lt;/P&gt;&lt;P&gt;vpdn enable outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PPP virtual access open, ifc = 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rcvd Link Control Protocol pkt, Action code is: Config Request, len is: 17&lt;/P&gt;&lt;P&gt;Pkt dump: 010405780506575173cb070208020d0306&lt;/P&gt;&lt;P&gt;LCP Option: Max_Rcv_Units, len: 4, data: 0578&lt;/P&gt;&lt;P&gt;LCP Option: MAGIC_NUMBER, len: 6, data: 575173cb&lt;/P&gt;&lt;P&gt;LCP Option: PROTOCOL_HDR_COMPRESSION, len: 2, data: &lt;/P&gt;&lt;P&gt;LCP Option: ADDRESS_CONTROL_COMPRESSION, len: 2, data: &lt;/P&gt;&lt;P&gt;LCP Option: CALL_BACK, len: 3, data: 06&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Xmit Link Control Protocol pkt, Action code is: Config Request, len is: 11&lt;/P&gt;&lt;P&gt;Pkt dump: 0305c2238005064d525532&lt;/P&gt;&lt;P&gt;LCP Option: AUTHENTICATION_TYPES, len: 5, data: c22380&lt;/P&gt;&lt;P&gt;LCP Option: MAGIC_NUMBER, len: 6, data: 4d525532&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Xmit Link Control Protocol pkt, Action code is: Config Reject, len is: 11&lt;/P&gt;&lt;P&gt;Pkt dump: 01040578070208020d0306&lt;/P&gt;&lt;P&gt;LCP Option: Max_Rcv_Units, len: 4, data: 0578&lt;/P&gt;&lt;P&gt;LCP Option: PROTOCOL_HDR_COMPRESSION, len: 2, data: &lt;/P&gt;&lt;P&gt;LCP Option: ADDRESS_CONTROL_COMPRESSION, len: 2, data: &lt;/P&gt;&lt;P&gt;LCP Option: CALL_BACK, len: 3, data: 06&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rcvd Link Control Protocol pkt, Action code is: Config ACK, len is: 11&lt;/P&gt;&lt;P&gt;Pkt dump: 0305c2238005064d525532&lt;/P&gt;&lt;P&gt;LCP Option: AUTHENTICATION_TYPES, len: 5, data: c22380&lt;/P&gt;&lt;P&gt;LCP Option: MAGIC_NUMBER, len: 6, data: 4d525532&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rcvd Link Control Protocol pkt, Action code is: Config Request, len is: 6&lt;/P&gt;&lt;P&gt;Pkt dump: 0506575173cb&lt;/P&gt;&lt;P&gt;LCP Option: MAGIC_NUMBER, len: 6, data: 575173cb&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Xmit Link Control Protocol pkt, Action code is: Config ACK, len is: 6&lt;/P&gt;&lt;P&gt;Pkt dump: 0506575173cb&lt;/P&gt;&lt;P&gt;LCP Option: MAGIC_NUMBER, len: 6, data: 575173cb&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rcvd Link Control Protocol pkt, Action code is: Identification, len is: 14&lt;/P&gt;&lt;P&gt;Pkt dump: 575173cb4d5352415356352e3130&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rcvd Link Control Protocol pkt, Action code is: Identification, len is: 16&lt;/P&gt;&lt;P&gt;Pkt dump: 575173cb4d535241532d302d4a414445&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;uauth_mschap_send_req: pppdev=4, ulen=19, user=DOMAIN\JoeUser&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;uauth_mschap_proc_reply: pppdev = 1, status = 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;uauth mschap: pppdev = 1, close ppp dev&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PPP va close, device = 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;Rcvd Link Control Protocol pkt, Action code is: Termination Request, len is: 12&lt;/P&gt;&lt;P&gt;Pkt dump: 575173cb003ccd74000002ce&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Xmit Link Control Protocol pkt, Action code is: Termination ACK, len is: 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PPP va close, device = 4&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 21:57:37 GMT</pubDate>
    <dc:creator>peperg</dc:creator>
    <dc:date>2019-03-10T21:57:37Z</dc:date>
    <item>
      <title>AAA not authenticating to Win Radius server</title>
      <link>https://community.cisco.com/t5/network-access-control/aaa-not-authenticating-to-win-radius-server/m-p/617499#M421828</link>
      <description>&lt;P&gt;I have a client that is trying to use a Windows ISA server as a RADIUS server to authenticate PPTP connections to a 515e. I know that the VPN connection is working since I can set it up to use local auth and it works just fine. When I set up radius the clients get an error that says that it did not get a response from the server (I think it was 761).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The relevant config and the debug ppp negotiation and debug ppp error is below, I am looking to see if there is a way to test the RADIUS server other than having someone try to connect. Or if anyone has had any experience setting these up.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa-server RADIUS protocol radius&lt;/P&gt;&lt;P&gt;aaa-server RADIUS max-failed-attempts 3&lt;/P&gt;&lt;P&gt;aaa-server RADIUS deadtime 10&lt;/P&gt;&lt;P&gt;aaa-server RadiusServers protocol radius&lt;/P&gt;&lt;P&gt;aaa-server RadiusServers max-failed-attempts 3&lt;/P&gt;&lt;P&gt;aaa-server RadiusServers deadtime 10&lt;/P&gt;&lt;P&gt;aaa-server RadiusServers (inside) host ********** ***KEY*** timeout 10&lt;/P&gt;&lt;P&gt;vpdn group VPN accept dialin pptp&lt;/P&gt;&lt;P&gt;vpdn group VPN ppp authentication pap&lt;/P&gt;&lt;P&gt;vpdn group VPN ppp authentication chap&lt;/P&gt;&lt;P&gt;vpdn group VPN ppp authentication mschap&lt;/P&gt;&lt;P&gt;vpdn group VPN ppp encryption mppe 40&lt;/P&gt;&lt;P&gt;vpdn group VPN client configuration address local VPN-Clients&lt;/P&gt;&lt;P&gt;vpdn group VPN client configuration dns ***********&lt;/P&gt;&lt;P&gt;vpdn group VPN client authentication aaa RadiusServers&lt;/P&gt;&lt;P&gt;vpdn group VPN pptp echo 60&lt;/P&gt;&lt;P&gt;vpdn enable outside&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PPP virtual access open, ifc = 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rcvd Link Control Protocol pkt, Action code is: Config Request, len is: 17&lt;/P&gt;&lt;P&gt;Pkt dump: 010405780506575173cb070208020d0306&lt;/P&gt;&lt;P&gt;LCP Option: Max_Rcv_Units, len: 4, data: 0578&lt;/P&gt;&lt;P&gt;LCP Option: MAGIC_NUMBER, len: 6, data: 575173cb&lt;/P&gt;&lt;P&gt;LCP Option: PROTOCOL_HDR_COMPRESSION, len: 2, data: &lt;/P&gt;&lt;P&gt;LCP Option: ADDRESS_CONTROL_COMPRESSION, len: 2, data: &lt;/P&gt;&lt;P&gt;LCP Option: CALL_BACK, len: 3, data: 06&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Xmit Link Control Protocol pkt, Action code is: Config Request, len is: 11&lt;/P&gt;&lt;P&gt;Pkt dump: 0305c2238005064d525532&lt;/P&gt;&lt;P&gt;LCP Option: AUTHENTICATION_TYPES, len: 5, data: c22380&lt;/P&gt;&lt;P&gt;LCP Option: MAGIC_NUMBER, len: 6, data: 4d525532&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Xmit Link Control Protocol pkt, Action code is: Config Reject, len is: 11&lt;/P&gt;&lt;P&gt;Pkt dump: 01040578070208020d0306&lt;/P&gt;&lt;P&gt;LCP Option: Max_Rcv_Units, len: 4, data: 0578&lt;/P&gt;&lt;P&gt;LCP Option: PROTOCOL_HDR_COMPRESSION, len: 2, data: &lt;/P&gt;&lt;P&gt;LCP Option: ADDRESS_CONTROL_COMPRESSION, len: 2, data: &lt;/P&gt;&lt;P&gt;LCP Option: CALL_BACK, len: 3, data: 06&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rcvd Link Control Protocol pkt, Action code is: Config ACK, len is: 11&lt;/P&gt;&lt;P&gt;Pkt dump: 0305c2238005064d525532&lt;/P&gt;&lt;P&gt;LCP Option: AUTHENTICATION_TYPES, len: 5, data: c22380&lt;/P&gt;&lt;P&gt;LCP Option: MAGIC_NUMBER, len: 6, data: 4d525532&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rcvd Link Control Protocol pkt, Action code is: Config Request, len is: 6&lt;/P&gt;&lt;P&gt;Pkt dump: 0506575173cb&lt;/P&gt;&lt;P&gt;LCP Option: MAGIC_NUMBER, len: 6, data: 575173cb&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Xmit Link Control Protocol pkt, Action code is: Config ACK, len is: 6&lt;/P&gt;&lt;P&gt;Pkt dump: 0506575173cb&lt;/P&gt;&lt;P&gt;LCP Option: MAGIC_NUMBER, len: 6, data: 575173cb&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rcvd Link Control Protocol pkt, Action code is: Identification, len is: 14&lt;/P&gt;&lt;P&gt;Pkt dump: 575173cb4d5352415356352e3130&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rcvd Link Control Protocol pkt, Action code is: Identification, len is: 16&lt;/P&gt;&lt;P&gt;Pkt dump: 575173cb4d535241532d302d4a414445&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;uauth_mschap_send_req: pppdev=4, ulen=19, user=DOMAIN\JoeUser&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;uauth_mschap_proc_reply: pppdev = 1, status = 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;uauth mschap: pppdev = 1, close ppp dev&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PPP va close, device = 1&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;PPP chap receive response: rcvd type MS-CHAP-V1&lt;/P&gt;&lt;P&gt;Rcvd Link Control Protocol pkt, Action code is: Termination Request, len is: 12&lt;/P&gt;&lt;P&gt;Pkt dump: 575173cb003ccd74000002ce&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Xmit Link Control Protocol pkt, Action code is: Termination ACK, len is: 0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;PPP va close, device = 4&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 21:57:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/aaa-not-authenticating-to-win-radius-server/m-p/617499#M421828</guid>
      <dc:creator>peperg</dc:creator>
      <dc:date>2019-03-10T21:57:37Z</dc:date>
    </item>
    <item>
      <title>Re: AAA not authenticating to Win Radius server</title>
      <link>https://community.cisco.com/t5/network-access-control/aaa-not-authenticating-to-win-radius-server/m-p/617500#M421829</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;You get the details for troubleshooting the Cisco ACS server from the following URL: &lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/products/hw/vpndevc/ps2284/products_configuration_example09186a0080094a03.shtml" target="_blank"&gt;http://www.cisco.com/en/US/products/hw/vpndevc/ps2284/products_configuration_example09186a0080094a03.shtml&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 06 Feb 2007 23:08:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/aaa-not-authenticating-to-win-radius-server/m-p/617500#M421829</guid>
      <dc:creator>smahbub</dc:creator>
      <dc:date>2007-02-06T23:08:46Z</dc:date>
    </item>
    <item>
      <title>Re: AAA not authenticating to Win Radius server</title>
      <link>https://community.cisco.com/t5/network-access-control/aaa-not-authenticating-to-win-radius-server/m-p/617501#M421831</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Windows ISA server not Cisco ACS. I have resolved the issue by rebuilding the ISA services on the Windows server.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 07 Feb 2007 15:45:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/aaa-not-authenticating-to-win-radius-server/m-p/617501#M421831</guid>
      <dc:creator>peperg</dc:creator>
      <dc:date>2007-02-07T15:45:58Z</dc:date>
    </item>
  </channel>
</rss>

