<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: AAA on 2500 in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/aaa-on-2500/m-p/292089#M431201</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The information you provided is useful but not enough for us to be able to diagnose your problem. It would be  most important to include the part of the config where you configure the tacacs host (and its key - though you probably want to hide the actual key value) and the configuration of the vty lines.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It would also be helpful if you would post the output of the show tacacs command.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It would also be helpful if you could post the output of debug tacacs authentication. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Based on your description of the symptoms (when you attempt to login it hesitates and then gives just the password prompt) I would guess that there is something incorrect in how you have configured the TACACS server. It might be an error in specifying the address of the server, it might be an error in specifying the key for the server, it might be that the server does not have your router configured as a device for which to authenticate.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Check on these and let us know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rick&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 28 Jun 2004 18:44:19 GMT</pubDate>
    <dc:creator>Richard Burts</dc:creator>
    <dc:date>2004-06-28T18:44:19Z</dc:date>
    <item>
      <title>AAA on 2500</title>
      <link>https://community.cisco.com/t5/network-access-control/aaa-on-2500/m-p/292088#M431200</link>
      <description>&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;unable to get tacacs working on a 2500.  Tried several different ways to configure it.  but I believe I am not doing something correctly between the AAA commands and the vty 0 4 line. It normally looks for a tacacs server (hesitates) but then goes to a password prompt.  &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa new-model&lt;/P&gt;&lt;P&gt;aaa authentication login default tacacs+ line&lt;/P&gt;&lt;P&gt;aaa authentication login LINE line&lt;/P&gt;&lt;P&gt;aaa authentication login NONE none&lt;/P&gt;&lt;P&gt;aaa authentication enable default tacacs+ enable&lt;/P&gt;&lt;P&gt;aaa authorization exec tacacs+ if-authenticated&lt;/P&gt;&lt;P&gt;aaa authorization commands 15 tacacs+ if-authenticated&lt;/P&gt;&lt;P&gt;aaa accounting exec start-stop tacacs+&lt;/P&gt;&lt;P&gt;aaa accounting commands 15 start-stop tacacs+&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco Internetwork Operating System Software &lt;/P&gt;&lt;P&gt;IOS (tm) 2500 Software (C2500-I-L), Version 11.2(16), RELEASE SOFTWARE (fc1)&lt;/P&gt;&lt;P&gt;Copyright (c) 1986-1998 by cisco Systems, Inc.&lt;/P&gt;&lt;P&gt;Compiled Tue 06-Oct-98 11:30 by ashah&lt;/P&gt;&lt;P&gt;Image text-base: 0x0302300C, data-base: 0x00001000&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ROM: System Bootstrap, Version 11.0(10c), SOFTWARE&lt;/P&gt;&lt;P&gt;BOOTFLASH: 3000 Bootstrap Software (IGS-BOOT-R), Version 11.0(10c), RELEASE SOFTWARE (fc1)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;System image file is "flash:c2500-i-112-16.bin", booted via flash&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;cisco 2524 (68030) processor (revision J) with 2048K/2048K bytes of memory.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 20:44:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/aaa-on-2500/m-p/292088#M431200</guid>
      <dc:creator>jim collins</dc:creator>
      <dc:date>2019-03-10T20:44:18Z</dc:date>
    </item>
    <item>
      <title>Re: AAA on 2500</title>
      <link>https://community.cisco.com/t5/network-access-control/aaa-on-2500/m-p/292089#M431201</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;The information you provided is useful but not enough for us to be able to diagnose your problem. It would be  most important to include the part of the config where you configure the tacacs host (and its key - though you probably want to hide the actual key value) and the configuration of the vty lines.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It would also be helpful if you would post the output of the show tacacs command.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It would also be helpful if you could post the output of debug tacacs authentication. &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Based on your description of the symptoms (when you attempt to login it hesitates and then gives just the password prompt) I would guess that there is something incorrect in how you have configured the TACACS server. It might be an error in specifying the address of the server, it might be an error in specifying the key for the server, it might be that the server does not have your router configured as a device for which to authenticate.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Check on these and let us know.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rick&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 28 Jun 2004 18:44:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/aaa-on-2500/m-p/292089#M431201</guid>
      <dc:creator>Richard Burts</dc:creator>
      <dc:date>2004-06-28T18:44:19Z</dc:date>
    </item>
    <item>
      <title>Re: AAA on 2500</title>
      <link>https://community.cisco.com/t5/network-access-control/aaa-on-2500/m-p/292090#M431202</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I had to wait a few days for the box to be rebooted &lt;span class="lia-unicode-emoji" title=":slightly_smiling_face:"&gt;🙂&lt;/span&gt;   tacacs server key fat fingered.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks  &lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 08 Jul 2004 19:45:45 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/aaa-on-2500/m-p/292090#M431202</guid>
      <dc:creator>jim collins</dc:creator>
      <dc:date>2004-07-08T19:45:45Z</dc:date>
    </item>
  </channel>
</rss>

