<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: ip tacacs source-interface Loopback0 is not working in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3362734#M549364</link>
    <description>share the output of debug tacacs when you are trying to authenticate&lt;BR /&gt;</description>
    <pubDate>Mon, 09 Apr 2018 11:03:01 GMT</pubDate>
    <dc:creator>Mohammed al Baqari</dc:creator>
    <dc:date>2018-04-09T11:03:01Z</dc:date>
    <item>
      <title>ip tacacs source-interface Loopback0 is not working</title>
      <link>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3362695#M549361</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I have used Loopback 0 as Source interface for tacacs, But I am not able to logging using AD ID, But when I configure GIG 0/0 as source interface, I am able to logging in, Can you please help me to configure&amp;nbsp;&lt;SPAN&gt;Loopback 0 as Source interface for tacacs&lt;/SPAN&gt; &amp;amp; let me know what I made wrong?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 18:53:08 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3362695#M549361</guid>
      <dc:creator>Raj Kumar L</dc:creator>
      <dc:date>2020-02-21T18:53:08Z</dc:date>
    </item>
    <item>
      <title>Re: ip tacacs source-interface Loopback0 is not working</title>
      <link>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3362703#M549362</link>
      <description>Make sure that your loopback IP is able to reach your AD&lt;BR /&gt;</description>
      <pubDate>Mon, 09 Apr 2018 09:39:02 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3362703#M549362</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2018-04-09T09:39:02Z</dc:date>
    </item>
    <item>
      <title>Re: ip tacacs source-interface Loopback0 is not working</title>
      <link>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3362706#M549363</link>
      <description>&lt;P&gt;yes Loop back ip is bale to reach AD &amp;amp; tacacs server&lt;/P&gt;</description>
      <pubDate>Mon, 09 Apr 2018 09:44:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3362706#M549363</guid>
      <dc:creator>Raj Kumar L</dc:creator>
      <dc:date>2018-04-09T09:44:15Z</dc:date>
    </item>
    <item>
      <title>Re: ip tacacs source-interface Loopback0 is not working</title>
      <link>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3362734#M549364</link>
      <description>share the output of debug tacacs when you are trying to authenticate&lt;BR /&gt;</description>
      <pubDate>Mon, 09 Apr 2018 11:03:01 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3362734#M549364</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2018-04-09T11:03:01Z</dc:date>
    </item>
    <item>
      <title>Re: ip tacacs source-interface Loopback0 is not working</title>
      <link>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3362738#M549365</link>
      <description>&lt;P&gt;Please find the logs&lt;/P&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: AAA/AUTHOR: auth_need : user= 'telecom' ruser= 'Router C'rem_addr= '10.170.215.72' priv= 1 list= '' AUTHOR-TYPE= 'commands'&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: AAA/AUTHOR: auth_need : user= 'telecom' ruser= '&lt;SPAN&gt;Router &lt;/SPAN&gt;C'rem_addr= '10.170.215.72' priv= 15 list= '' AUTHOR-TYPE= 'commands'&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: AAA: parse name=&amp;lt;no string&amp;gt; idb type=-1 tty=-1&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: AAA/MEMORY: create_user (0x24EA3724) user='User1' ruser='NULL' ds0=0 port='' rem_addr='NULL' authen_type=ASCII service=LOGIN priv=1 initial_task_id='0', vrf= (id=0)&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: TAC+: send AUTHEN/START packet ver=192 id=-1969424120&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: TAC+: Using default tacacs server-group "tacacs+" list.&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: TAC+: Opening TCP/IP to 172.27.1.37/49 timeout=5&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: TCB08328254 created&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: TCB08328254 setting property TCP_GIVEUP (41) 1E667A18&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: TCP: Random local port generated 61624, network 1&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: TCB08328254 bound to 10.170.222.253.61624&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: Reserved port 61624 in Transport Port Agent for TCP IP type 1&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: TCP: pmtu enabled,mss is now set to 1460&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: TCP: sending SYN, seq 664451917, ack 0&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: TCP0: Connection to 172.27.1.37:49, advertising MSS 1460&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:04.517 GMT: TCP0: state was CLOSED -&amp;gt; SYNSENT [61624 -&amp;gt; 172.27.1.37(49)]&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:06.518 GMT: 10.170.222.253:61624 &amp;lt;---&amp;gt; 172.27.1.37:49 congestion window changes&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:06.518 GMT: cwnd from 1460 to 1460, ssthresh from 65535 to 2920&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:06.518 GMT: TCP0: timeout #1 - timeout is 4000 ms, seq 664451917&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:06.518 GMT: TCP: (61624) -&amp;gt; 172.27.1.37(49)&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:09.519 GMT: TCP0: GIVEUP timeout timer expired&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:09.519 GMT: Released port 61624 in Transport Port Agent for TCP IP type 1 delay 240000&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:09.519 GMT: TCP0: state was SYNSENT -&amp;gt; CLOSED [61624 -&amp;gt; 172.27.1.37(49)]&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:09.519 GMT: TCB 0x8328254 destroyed&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:09.519 GMT: TAC+: TCP/IP open to 172.27.1.37/49 failed -- Connection timed out; remote host not responding&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:09.519 GMT: TAC+: Opening TCP/IP to 172.27.1.137/49 timeout=5&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:09.519 GMT: TCB24E7AF40 created&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:09.519 GMT: TCB24E7AF40 setting property TCP_GIVEUP (41) 1E667A18&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:09.519 GMT: TCP: Random local port generated 17979, network 1&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:09.519 GMT: TCB24E7AF40 bound to 10.170.222.253.17979&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:09.519 GMT: Reserved port 17979 in Transport Port Agent for TCP IP type 1&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:09.519 GMT: TCP: pmtu enabled,mss is now set to 1460&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:09.519 GMT: TCP: sending SYN, seq 1785071123, ack 0&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:09.519 GMT: TCP0: Connection to 172.27.1.137:49, advertising MSS 1460&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:09.519 GMT: TCP0: state was CLOSED -&amp;gt; SYNSENT [17979 -&amp;gt; 172.27.1.137(49)]&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:11.519 GMT: 10.170.222.253:17979 &amp;lt;---&amp;gt; 172.27.1.137:49 congestion window changes&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:11.519 GMT: cwnd from 1460 to 1460, ssthresh from 65535 to 2920&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:11.519 GMT: TCP0: timeout #1 - timeout is 4000 ms, seq 1785071123&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:11.519 GMT: TCP: (17979) -&amp;gt; 172.27.1.137(49)No authoritative response from any server.&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;BRIND-MFG-1-C#&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:14.520 GMT: TCP0: GIVEUP timeout timer expired&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:14.520 GMT: Released port 17979 in Transport Port Agent for TCP IP type 1 delay 240000&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:14.520 GMT: TCP0: state was SYNSENT -&amp;gt; CLOSED [17979 -&amp;gt; 172.27.1.137(49)]&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:14.520 GMT: TCB 0x24E7AF40 destroyed&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:14.520 GMT: TAC+: TCP/IP open to 172.27.1.137/49 failed -- Connection timed out; remote host not responding&lt;/DIV&gt;
&lt;DIV&gt;Apr 9 16:54:14.520 GMT: AAA/MEMORY: free_user (0x24EA3724) user='User1' ruser='NULL' port='' rem_addr='NULL' authen_type=ASCII service=LOGIN priv=1 vrf= (id=0)&lt;/DIV&gt;</description>
      <pubDate>Tue, 10 Apr 2018 06:20:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3362738#M549365</guid>
      <dc:creator>Raj Kumar L</dc:creator>
      <dc:date>2018-04-10T06:20:05Z</dc:date>
    </item>
    <item>
      <title>Re: ip tacacs source-interface Loopback0 is not working</title>
      <link>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3362763#M549366</link>
      <description>Hi  Raj Kumar L,&lt;BR /&gt;&lt;BR /&gt;It seems that port 49 on the server is closed. Could you try telnet ip port and see if you get connection? If not i would go on server and check the listening ports.&lt;BR /&gt;&lt;BR /&gt;HTH,</description>
      <pubDate>Mon, 09 Apr 2018 13:11:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3362763#M549366</guid>
      <dc:creator>konstantinoschiotakis</dc:creator>
      <dc:date>2018-04-09T13:11:20Z</dc:date>
    </item>
    <item>
      <title>Re: ip tacacs source-interface Loopback0 is not working</title>
      <link>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3362829#M549367</link>
      <description>-##From the debugs connectivity between loopback and tacacs server is&lt;BR /&gt;blocked. Check any firewall blocking it or routing.&lt;BR /&gt;</description>
      <pubDate>Mon, 09 Apr 2018 15:40:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3362829#M549367</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2018-04-09T15:40:16Z</dc:date>
    </item>
    <item>
      <title>Re: ip tacacs source-interface Loopback0 is not working</title>
      <link>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3363162#M549368</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Please find the telnet output &amp;amp; test aaa output&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;DIV&gt;Trying 172.27.1.37, 49 ... Open&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;[Connection to 172.27.1.37 closed by foreign host]&lt;/DIV&gt;
&lt;DIV&gt;&amp;nbsp;&lt;/DIV&gt;
&lt;DIV&gt;
&lt;DIV&gt;test aaa group tacacs+ XXXXXX&amp;nbsp;XXXXXX legacy&lt;/DIV&gt;
&lt;DIV&gt;Attempting authentication test to server-group tacacs+ using tacacs+&lt;/DIV&gt;
&lt;DIV&gt;No authoritative response from any server.&lt;/DIV&gt;
&lt;/DIV&gt;</description>
      <pubDate>Tue, 10 Apr 2018 03:33:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3363162#M549368</guid>
      <dc:creator>Raj Kumar L</dc:creator>
      <dc:date>2018-04-10T03:33:36Z</dc:date>
    </item>
    <item>
      <title>Re: ip tacacs source-interface Loopback0 is not working</title>
      <link>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3363171#M549369</link>
      <description>did you specify source interface with telnet&lt;BR /&gt;</description>
      <pubDate>Tue, 10 Apr 2018 04:01:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3363171#M549369</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2018-04-10T04:01:16Z</dc:date>
    </item>
    <item>
      <title>Re: ip tacacs source-interface Loopback0 is not working</title>
      <link>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3363189#M549370</link>
      <description>&lt;P&gt;No, When I give the&amp;nbsp;source-interface as loopback 0 telnet is not opening&lt;/P&gt;</description>
      <pubDate>Tue, 10 Apr 2018 05:20:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3363189#M549370</guid>
      <dc:creator>Raj Kumar L</dc:creator>
      <dc:date>2018-04-10T05:20:34Z</dc:date>
    </item>
    <item>
      <title>Re: ip tacacs source-interface Loopback0 is not working</title>
      <link>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3363287#M549371</link>
      <description>Thats the problem check the reacbility&lt;BR /&gt;</description>
      <pubDate>Tue, 10 Apr 2018 08:33:42 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ip-tacacs-source-interface-loopback0-is-not-working/m-p/3363287#M549371</guid>
      <dc:creator>Mohammed al Baqari</dc:creator>
      <dc:date>2018-04-10T08:33:42Z</dc:date>
    </item>
  </channel>
</rss>

