<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic AAA Issue??? in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/aaa-issue/m-p/654346#M422787</link>
    <description>&lt;P&gt;I'm having a strange problem with a few routers sending invalid characters to my TACACS server.  Example is it's trying to authenticate part of the banner. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here's the aaa config and part of the debug.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;aaa authentication login default group tacacs+ line&lt;/P&gt;&lt;P&gt;aaa authentication login no_tacacs enable&lt;/P&gt;&lt;P&gt;aaa authentication enable default group tacacs+ enable&lt;/P&gt;&lt;P&gt;aaa authorization exec default group tacacs+ if-authenticated&lt;/P&gt;&lt;P&gt;aaa authorization commands 1 default group tacacs+ if-authenticated&lt;/P&gt;&lt;P&gt;aaa authorization commands 15 default group tacacs+ if-authenticated&lt;/P&gt;&lt;P&gt;aaa accounting exec default start-stop group tacacs+&lt;/P&gt;&lt;P&gt;aaa accounting commands 0 default start-stop group tacacs+&lt;/P&gt;&lt;P&gt;aaa accounting commands 1 default start-stop group tacacs+&lt;/P&gt;&lt;P&gt;aaa accounting commands 15 default start-stop group tacacs+&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;DEBUG:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Oct  4 18:50:30.842: AAA/MEMORY: free_user (0x6364C220) user='NULL' ruser='NULL' port='tty0' rem_addr='async' authen_type=ASCII service=LOGIN priv=1&lt;/P&gt;&lt;P&gt;Oct  4 18:50:33.842: AAA: parse name=tty0 idb type=-1 tty=-1&lt;/P&gt;&lt;P&gt;Oct  4 18:50:33.842: AAA: name=tty0 flags=0x11 type=4 shelf=0 slot=0 adapter=0 port=0 channel=0&lt;/P&gt;&lt;P&gt;Oct  4 18:50:33.842: AAA/MEMORY: create_user (0x63588100) user='NULL' ruser='NULL' ds0=0 port='tty0' rem_addr='async' authen_type=ASCII service=LOGIN priv=1 initial_task_id='0'&lt;/P&gt;&lt;P&gt;Oct  4 18:50:34.594: AAA/MEMORY: free_user_quiet (0x63588100) user='expressly consents to ' ruser='NULL' port='tty0' rem_addr='async' authen_type=1 service=1 priv=1&lt;/P&gt;&lt;P&gt;Oct  4 18:50:34.594: AAA: parse name=tty0 idb type=-1 tty=-1&lt;/P&gt;&lt;P&gt;Oct  4 18:50:34.594: AAA: name=tty0 flags=0x11 type=4 shelf=0 slot=0 adapter=0 port=0 channel=0&lt;/P&gt;&lt;P&gt;Oct  4 18:50:34.594: AAA/MEMORY: create_user (0x6364ECAC) user='NULL' ruser='NULL' ds0=0 port='tty0' rem_addr='async' authen_type=ASCII service=LOGIN priv=1 initial_task_id='0'name=tty0 flags=0x11 type=4 shelf=0 slot=0 adapter=0 port=0 channel=0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for any info...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 21:46:31 GMT</pubDate>
    <dc:creator>meinanut1</dc:creator>
    <dc:date>2019-03-10T21:46:31Z</dc:date>
    <item>
      <title>AAA Issue???</title>
      <link>https://community.cisco.com/t5/network-access-control/aaa-issue/m-p/654346#M422787</link>
      <description>&lt;P&gt;I'm having a strange problem with a few routers sending invalid characters to my TACACS server.  Example is it's trying to authenticate part of the banner. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Here's the aaa config and part of the debug.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;aaa authentication login default group tacacs+ line&lt;/P&gt;&lt;P&gt;aaa authentication login no_tacacs enable&lt;/P&gt;&lt;P&gt;aaa authentication enable default group tacacs+ enable&lt;/P&gt;&lt;P&gt;aaa authorization exec default group tacacs+ if-authenticated&lt;/P&gt;&lt;P&gt;aaa authorization commands 1 default group tacacs+ if-authenticated&lt;/P&gt;&lt;P&gt;aaa authorization commands 15 default group tacacs+ if-authenticated&lt;/P&gt;&lt;P&gt;aaa accounting exec default start-stop group tacacs+&lt;/P&gt;&lt;P&gt;aaa accounting commands 0 default start-stop group tacacs+&lt;/P&gt;&lt;P&gt;aaa accounting commands 1 default start-stop group tacacs+&lt;/P&gt;&lt;P&gt;aaa accounting commands 15 default start-stop group tacacs+&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;DEBUG:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Oct  4 18:50:30.842: AAA/MEMORY: free_user (0x6364C220) user='NULL' ruser='NULL' port='tty0' rem_addr='async' authen_type=ASCII service=LOGIN priv=1&lt;/P&gt;&lt;P&gt;Oct  4 18:50:33.842: AAA: parse name=tty0 idb type=-1 tty=-1&lt;/P&gt;&lt;P&gt;Oct  4 18:50:33.842: AAA: name=tty0 flags=0x11 type=4 shelf=0 slot=0 adapter=0 port=0 channel=0&lt;/P&gt;&lt;P&gt;Oct  4 18:50:33.842: AAA/MEMORY: create_user (0x63588100) user='NULL' ruser='NULL' ds0=0 port='tty0' rem_addr='async' authen_type=ASCII service=LOGIN priv=1 initial_task_id='0'&lt;/P&gt;&lt;P&gt;Oct  4 18:50:34.594: AAA/MEMORY: free_user_quiet (0x63588100) user='expressly consents to ' ruser='NULL' port='tty0' rem_addr='async' authen_type=1 service=1 priv=1&lt;/P&gt;&lt;P&gt;Oct  4 18:50:34.594: AAA: parse name=tty0 idb type=-1 tty=-1&lt;/P&gt;&lt;P&gt;Oct  4 18:50:34.594: AAA: name=tty0 flags=0x11 type=4 shelf=0 slot=0 adapter=0 port=0 channel=0&lt;/P&gt;&lt;P&gt;Oct  4 18:50:34.594: AAA/MEMORY: create_user (0x6364ECAC) user='NULL' ruser='NULL' ds0=0 port='tty0' rem_addr='async' authen_type=ASCII service=LOGIN priv=1 initial_task_id='0'name=tty0 flags=0x11 type=4 shelf=0 slot=0 adapter=0 port=0 channel=0&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks for any info...&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 21:46:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/aaa-issue/m-p/654346#M422787</guid>
      <dc:creator>meinanut1</dc:creator>
      <dc:date>2019-03-10T21:46:31Z</dc:date>
    </item>
    <item>
      <title>Re: AAA Issue???</title>
      <link>https://community.cisco.com/t5/network-access-control/aaa-issue/m-p/654347#M422788</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;  Do we have a modem attached to this router if so please remove it and check its configurations.&lt;/P&gt;&lt;P&gt;Please enter "no exec" command under aux port.&lt;/P&gt;&lt;P&gt;Let me know if this helps.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Gagan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Oct 2006 20:05:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/aaa-issue/m-p/654347#M422788</guid>
      <dc:creator>gaganbatra</dc:creator>
      <dc:date>2006-10-04T20:05:05Z</dc:date>
    </item>
    <item>
      <title>Re: AAA Issue???</title>
      <link>https://community.cisco.com/t5/network-access-control/aaa-issue/m-p/654348#M422789</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks for hte response.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Yes, I do have a modem.  Why would I use the "no exec" command?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 04 Oct 2006 20:43:25 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/aaa-issue/m-p/654348#M422789</guid>
      <dc:creator>meinanut1</dc:creator>
      <dc:date>2006-10-04T20:43:25Z</dc:date>
    </item>
    <item>
      <title>Re: AAA Issue???</title>
      <link>https://community.cisco.com/t5/network-access-control/aaa-issue/m-p/654349#M422790</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;   The no exec command allows you to disable the EXEC process for connections which may attempt to send unsolicited data to the router. (For example, the control port of a rack of modems attached to an auxiliary port of router.) When certain types of data are sent to a line connection, an EXEC process can start, which makes the line unavailable. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;Gagan&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 06 Oct 2006 13:45:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/aaa-issue/m-p/654349#M422790</guid>
      <dc:creator>gaganbatra</dc:creator>
      <dc:date>2006-10-06T13:45:58Z</dc:date>
    </item>
  </channel>
</rss>

