<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Radius authentication still working after being disabled on Cisco ASA in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/radius-authentication-still-working-after-being-disabled-on/m-p/4293209#M565540</link>
    <description>&lt;P&gt;TACACS credentials are also working, I am able to see the tacacs logs in both the ASA ( debug aaa authentication) and ISE.&lt;/P&gt;&lt;P&gt;Not able to see RADIUS logs anywhere, even though is working.!!!&lt;/P&gt;&lt;P&gt;(RADIUS server is running in a Domain Controller as a NPS,&amp;nbsp; not ISE)&lt;/P&gt;</description>
    <pubDate>Wed, 17 Feb 2021 18:10:40 GMT</pubDate>
    <dc:creator>glezJos91986</dc:creator>
    <dc:date>2021-02-17T18:10:40Z</dc:date>
    <item>
      <title>Radius authentication still working after being disabled on Cisco ASA</title>
      <link>https://community.cisco.com/t5/network-access-control/radius-authentication-still-working-after-being-disabled-on/m-p/4292608#M565513</link>
      <description>&lt;P&gt;We recently moved from RADIUS (Windows NPS server) to TACACS (Cisco ISE) for our Cisco ASAs authentication. We removed from the ASA all RADIUS related config, and right now we only have TACACS configured as shown below.&lt;/P&gt;&lt;P&gt;For some reason we are still able to access the firewalls using the RADIUS credentials!!!!!!!! I don't know how is that working. I ran a &lt;STRONG&gt;debug aaa authentication&lt;/STRONG&gt; and &lt;STRONG&gt;debug radius&lt;/STRONG&gt;, accessed the firewalls using radius credentials and did not get any logs at all, I did the same thing using tacacs credentials, and I was able to see the logs from the debug command, I don't understand if there is some kind of bug or if I am missing something obvious here, any advice? Thank you in advance!!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&lt;BR /&gt;aaa-server isetacacs protocol tacacs+&lt;BR /&gt;aaa-server isetacacs (mgmt) host 192.168.1.1&lt;/P&gt;&lt;P&gt;aaa-server isetacacs (mgmt) host 192.168.1.2&lt;BR /&gt;aaa authentication serial console LOCAL&lt;BR /&gt;aaa authentication ssh console isetacacs LOCAL&lt;BR /&gt;aaa authentication http console isetacacs LOCAL&lt;BR /&gt;aaa authorization exec authentication-server auto-enable&lt;/P&gt;</description>
      <pubDate>Tue, 16 Feb 2021 18:23:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/radius-authentication-still-working-after-being-disabled-on/m-p/4292608#M565513</guid>
      <dc:creator>glezJos91986</dc:creator>
      <dc:date>2021-02-16T18:23:30Z</dc:date>
    </item>
    <item>
      <title>Re: Radius authentication still working after being disabled on Cisco ASA</title>
      <link>https://community.cisco.com/t5/network-access-control/radius-authentication-still-working-after-being-disabled-on/m-p/4292958#M565531</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Were you also be able to see these on ISE live logs when you login? What can you see?&lt;/P&gt;&lt;P&gt;I mean, are the TACACS credentials also working?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Wed, 17 Feb 2021 10:48:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/radius-authentication-still-working-after-being-disabled-on/m-p/4292958#M565531</guid>
      <dc:creator>joseponceiii</dc:creator>
      <dc:date>2021-02-17T10:48:36Z</dc:date>
    </item>
    <item>
      <title>Re: Radius authentication still working after being disabled on Cisco ASA</title>
      <link>https://community.cisco.com/t5/network-access-control/radius-authentication-still-working-after-being-disabled-on/m-p/4293209#M565540</link>
      <description>&lt;P&gt;TACACS credentials are also working, I am able to see the tacacs logs in both the ASA ( debug aaa authentication) and ISE.&lt;/P&gt;&lt;P&gt;Not able to see RADIUS logs anywhere, even though is working.!!!&lt;/P&gt;&lt;P&gt;(RADIUS server is running in a Domain Controller as a NPS,&amp;nbsp; not ISE)&lt;/P&gt;</description>
      <pubDate>Wed, 17 Feb 2021 18:10:40 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/radius-authentication-still-working-after-being-disabled-on/m-p/4293209#M565540</guid>
      <dc:creator>glezJos91986</dc:creator>
      <dc:date>2021-02-17T18:10:40Z</dc:date>
    </item>
  </channel>
</rss>

