<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: auth-proxy tacacs question  in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/auth-proxy-tacacs-question/m-p/469543#M428383</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Figured it out: I had not put in a default aaa authentication login default tacacas+ command. I didn't think it was necessary. I was wrong.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Tue, 04 Oct 2005 20:06:42 GMT</pubDate>
    <dc:creator>nickpowers</dc:creator>
    <dc:date>2005-10-04T20:06:42Z</dc:date>
    <item>
      <title>auth-proxy tacacs question</title>
      <link>https://community.cisco.com/t5/network-access-control/auth-proxy-tacacs-question/m-p/469542#M428380</link>
      <description>&lt;P&gt;My Cisco ACS is not allowing me to log in using the auth-proxy http page. It states: unknown username. When I debug AAA Tacacs I get this information:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed uri '/'&lt;/P&gt;&lt;P&gt;5d23h: HTTP: client version 1.1&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed extension Accept&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed extension Referer&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed extension Accept-Language&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed extension Content-Type&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed extension Accept-Encoding&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed extension User-Agent&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed extension Host&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed extension Content-Length&lt;/P&gt;&lt;P&gt;5d23h: HTTP: Content-length 56&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed extension Connection&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed extension Cache-Control&lt;/P&gt;&lt;P&gt;5d23h: HTTP: received POST '/' 4&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed variable 'au_pxytimetag'&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed value '517088482'&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed variable 'uname'&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed value 'myuser'&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed variable 'pwd'&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed value 'mypass'&lt;/P&gt;&lt;P&gt;5d23h: HTTP: parsed variable 'ok'&lt;/P&gt;&lt;P&gt;5d23h: HTTP: proxy done with post parsing&lt;/P&gt;&lt;P&gt;5d23h: AUTH-PROXY FUNC: auth_proxy_required_reauth&lt;/P&gt;&lt;P&gt;5d23h: AUTH-PROXY FUNC: auth_proxy_same_timestamp&lt;/P&gt;&lt;P&gt;5d23h: AUTH-PROXY FUNC: auth_proxy_wait_for_next_pwd&lt;/P&gt;&lt;P&gt;5d23h: AAA: parse name=FastEthernet0/1 idb type=-1 tty=-1&lt;/P&gt;&lt;P&gt;5d23h: AAA: name=FastEthernet0/1 flags=0x15 type=12 shelf=0 slot=0 adapter=0 port=1 channel=0&lt;/P&gt;&lt;P&gt;5d23h: AAA: parse name=&amp;lt;no string&amp;gt; idb type=-1 tty=-1&lt;/P&gt;&lt;P&gt;5d23h: AAA/MEMORY: create_user (0x826145A0) user='NULL' ruser='NULL' ds0=0 port='FastEthernet0/1' rem_addr='192.168.1.34' authen_type=ASCII service=LOGIN priv=0 initial_task_id='0'&lt;/P&gt;&lt;P&gt;5d23h: AAA/AUTHEN/START (4001909351): port='FastEthernet0/1' list='default' action=LOGIN service=LOGIN&lt;/P&gt;&lt;P&gt;5d23h: AAA/AUTHEN/START (4001909351): console login - default to "no auth required"&lt;/P&gt;&lt;P&gt;5d23h: AAA/AUTHEN/START (4001909351): Method=NONE&lt;/P&gt;&lt;P&gt;5d23h: AAA/AUTHEN (4001909351): status = PASS&lt;/P&gt;&lt;P&gt;5d23h: FastEthernet0/1 AAA/AUTHOR/HTTP (3914281355): Port='FastEthernet0/1' list='default' service=AUTH-PROXY&lt;/P&gt;&lt;P&gt;5d23h: AAA/AUTHOR/HTTP: FastEthernet0/1 (3914281355) user=''&lt;/P&gt;&lt;P&gt;5d23h: FastEthernet0/1 AAA/AUTHOR/HTTP (3914281355): send AV service=auth-proxy&lt;/P&gt;&lt;P&gt;5d23h: FastEthernet0/1 AAA/AUTHOR/HTTP (3914281355): send AV cmd*&lt;/P&gt;&lt;P&gt;5d23h: FastEthernet0/1 AAA/AUTHOR/HTTP (3914281355): found list "default"&lt;/P&gt;&lt;P&gt;5d23h: FastEthernet0/1 AAA/AUTHOR/HTTP (3914281355): Method=tacacs+ (tacacs+)&lt;/P&gt;&lt;P&gt;5d23h: %AAA/AUTHOR/TAC+: (3914281355): no username in request&lt;/P&gt;&lt;P&gt;5d23h: AAA/AUTHOR/TAC+: (3914281355): send AV service=auth-proxy&lt;/P&gt;&lt;P&gt;5d23h: AAA/AUTHOR/TAC+: (3914281355): send AV cmd*&lt;/P&gt;&lt;P&gt;5d23h: TAC+: Using default tacacs server-group "tacacs+" list.&lt;/P&gt;&lt;P&gt;5d23h: TAC+: Opening TCP/IP to ###.###.###.###/49 timeout=20&lt;/P&gt;&lt;P&gt;5d23h: TAC+: Opened TCP/IP handle 0x8279F504 to ###.###.###.###/49&lt;/P&gt;&lt;P&gt;5d23h: TAC+: periodic timer started&lt;/P&gt;&lt;P&gt;5d23h: TAC+: ###.###.###.### req=82615960 Qd id=3914281355 ver=192 handle=0x8279F504 (ESTAB) expire=19 AUTHOR/START queued&lt;/P&gt;&lt;P&gt;5d23h: TAC+: ###.###.###.### (3914281355) AUTHOR/START queued&lt;/P&gt;&lt;P&gt;5d23h: TAC+: ###.###.###.### ESTAB id=3914281355 wrote 71 of 71 bytes&lt;/P&gt;&lt;P&gt;5d23h: TAC+: ###.###.###.### req=82615960 Qd id=3914281355 ver=192 handle=0x8279F504 (ESTAB) expire=19 AUTHOR/START sent&lt;/P&gt;&lt;P&gt;5d23h: TAC+: ###.###.###.### ESTAB read=12 wanted=12 alloc=12 got=12&lt;/P&gt;&lt;P&gt;5d23h: TAC+: ###.###.###.### ESTAB read=56 wanted=56 alloc=56 got=44&lt;/P&gt;&lt;P&gt;5d23h: TAC+: ###.###.###.### received 56 byte reply for 82615960&lt;/P&gt;&lt;P&gt;5d23h: TAC+: req=82615960 Tx id=3914281355 ver=192 handle=0x8279F504 (ESTAB) expire=19 AUTHOR/START processed&lt;/P&gt;&lt;P&gt;5d23h: TAC+: (3914281355) AUTHOR/START processed&lt;/P&gt;&lt;P&gt;5d23h: TAC+: periodic timer stopped (queue empty)&lt;/P&gt;&lt;P&gt;5d23h: TAC+: (3914281355): received author response status = FAIL&lt;/P&gt;&lt;P&gt;5d23h: TAC+: Closing TCP/IP 0x8279F504 connection to ###.###.###.##/49&lt;/P&gt;&lt;P&gt;5d23h: AAA/AUTHOR (3914281355): Post authorization status = FAIL&lt;/P&gt;&lt;P&gt;5d23h: HTTP: proxy authorization rejected&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The line that interests me is:&lt;/P&gt;&lt;P&gt;5d23h: %AAA/AUTHOR/TAC+: (3914281355): no username in request&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Could this be my problem?? Could not be sending the username I entered?? Anybody ever seen this message before?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 21:20:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/auth-proxy-tacacs-question/m-p/469542#M428380</guid>
      <dc:creator>nickpowers</dc:creator>
      <dc:date>2019-03-10T21:20:04Z</dc:date>
    </item>
    <item>
      <title>Re: auth-proxy tacacs question</title>
      <link>https://community.cisco.com/t5/network-access-control/auth-proxy-tacacs-question/m-p/469543#M428383</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Figured it out: I had not put in a default aaa authentication login default tacacas+ command. I didn't think it was necessary. I was wrong.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 04 Oct 2005 20:06:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/auth-proxy-tacacs-question/m-p/469543#M428383</guid>
      <dc:creator>nickpowers</dc:creator>
      <dc:date>2005-10-04T20:06:42Z</dc:date>
    </item>
    <item>
      <title>Re: auth-proxy tacacs question</title>
      <link>https://community.cisco.com/t5/network-access-control/auth-proxy-tacacs-question/m-p/469544#M428385</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I have the same problem.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Laptom&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 05 Jan 2006 22:52:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/auth-proxy-tacacs-question/m-p/469544#M428385</guid>
      <dc:creator>CSCO10685980</dc:creator>
      <dc:date>2006-01-05T22:52:59Z</dc:date>
    </item>
  </channel>
</rss>

