<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic urgent: can't logon to switch after conf microsoft Radius for logon in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/urgent-can-t-logon-to-switch-after-conf-microsoft-radius-for/m-p/573984#M426856</link>
    <description>&lt;P&gt;Hi forum,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i can't logon to my switch after configuring logon with microsoft Radius, my configuration is as follow:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;username nwadmin privilege 15 password 7 &lt;/P&gt;&lt;P&gt;username yeopaul privilege 15 password 7 &lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;aaa authentication login default group XXXRADIUS local enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa group server radius XXXRADIUS &lt;/P&gt;&lt;P&gt;server X.X.X.X&lt;/P&gt;&lt;P&gt;radius-server host X.X.X.X auth-port 1645 acct-port 1646 timeout 60 retransmit 3 key XXXXX&lt;/P&gt;&lt;P&gt;=====================================&lt;/P&gt;&lt;P&gt;on the microsoft radius server, i can see from the security event that the authentication is successful. However, the system event show the logon fail, reason : the user attempt to use an authentication method that is not enabled on the matching remote access policy.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;how do I recover the switch's access?(it is my core switch running HSRP with another)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;what could be the cause of this problem?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Appreciate your help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks and Best regards,&lt;/P&gt;&lt;P&gt;Paul&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
    <pubDate>Sun, 10 Mar 2019 21:40:01 GMT</pubDate>
    <dc:creator>paulnigel</dc:creator>
    <dc:date>2019-03-10T21:40:01Z</dc:date>
    <item>
      <title>urgent: can't logon to switch after conf microsoft Radius for logon</title>
      <link>https://community.cisco.com/t5/network-access-control/urgent-can-t-logon-to-switch-after-conf-microsoft-radius-for/m-p/573984#M426856</link>
      <description>&lt;P&gt;Hi forum,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;i can't logon to my switch after configuring logon with microsoft Radius, my configuration is as follow:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;username nwadmin privilege 15 password 7 &lt;/P&gt;&lt;P&gt;username yeopaul privilege 15 password 7 &lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;aaa authentication login default group XXXRADIUS local enable&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa group server radius XXXRADIUS &lt;/P&gt;&lt;P&gt;server X.X.X.X&lt;/P&gt;&lt;P&gt;radius-server host X.X.X.X auth-port 1645 acct-port 1646 timeout 60 retransmit 3 key XXXXX&lt;/P&gt;&lt;P&gt;=====================================&lt;/P&gt;&lt;P&gt;on the microsoft radius server, i can see from the security event that the authentication is successful. However, the system event show the logon fail, reason : the user attempt to use an authentication method that is not enabled on the matching remote access policy.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;how do I recover the switch's access?(it is my core switch running HSRP with another)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;what could be the cause of this problem?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Appreciate your help.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks and Best regards,&lt;/P&gt;&lt;P&gt;Paul&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 21:40:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/urgent-can-t-logon-to-switch-after-conf-microsoft-radius-for/m-p/573984#M426856</guid>
      <dc:creator>paulnigel</dc:creator>
      <dc:date>2019-03-10T21:40:01Z</dc:date>
    </item>
    <item>
      <title>Re: urgent: can't logon to switch after conf microsoft Radius fo</title>
      <link>https://community.cisco.com/t5/network-access-control/urgent-can-t-logon-to-switch-after-conf-microsoft-radius-for/m-p/573985#M426860</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I suspect that Remote access policy is not configured on the IAS server. Please follow the link to create the remote access policy:&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://technet2.microsoft.com/WindowsServer/en/Library/89772aab-db97-47a7-b806-042061189fa61033.mspx?mfr=true" target="_blank"&gt;http://technet2.microsoft.com/WindowsServer/en/Library/89772aab-db97-47a7-b806-042061189fa61033.mspx?mfr=true&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 24 Jul 2006 12:51:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/urgent-can-t-logon-to-switch-after-conf-microsoft-radius-for/m-p/573985#M426860</guid>
      <dc:creator>wong34539</dc:creator>
      <dc:date>2006-07-24T12:51:15Z</dc:date>
    </item>
    <item>
      <title>Re: urgent: can't logon to switch after conf microsoft Radius fo</title>
      <link>https://community.cisco.com/t5/network-access-control/urgent-can-t-logon-to-switch-after-conf-microsoft-radius-for/m-p/573986#M426862</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Thanks much Wong,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;it resolved my issue. Cisco is actually using pap so i alter the policy to use pap, then it goes through.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;somehow i don't understand why even after i shutdown the Radius server, the switches still do not refer to the local user database for authentication, but when i did the same thing on my ASA, it does work.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks and regards,&lt;/P&gt;&lt;P&gt;paul&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 24 Jul 2006 23:11:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/urgent-can-t-logon-to-switch-after-conf-microsoft-radius-for/m-p/573986#M426862</guid>
      <dc:creator>paulnigel</dc:creator>
      <dc:date>2006-07-24T23:11:37Z</dc:date>
    </item>
  </channel>
</rss>

