<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic TACACS RANCID Nexus issue - AAA_AUTHOR_STATUS_METHOD=16(0x10) in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/tacacs-rancid-nexus-issue-aaa-author-status-method-16-0x10/m-p/2428979#M88351</link>
    <description>&lt;P&gt;I recently enabled command authorization on my Nexus switches and RANCID could no longer run. The error rancid reported was:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;AAA_AUTHOR_STATUS_METHOD=16(0x10)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It was weird because the commands RANCID was running, could be ran just fine manually by calling the rancid clogin script. We have different groups setup in TACACS, one for network engineers, and one specifically for RANCID. If I moved the rancid user over to the neteng group it would run fine, so I noticed a difference was a tac_plus.conf stanza present for neteng but missing for rancid:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;default service = permit&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Directly underneath the group definition. After adding that to the rancid user, all was well.&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 04:21:00 GMT</pubDate>
    <dc:creator>Mister Cartwright</dc:creator>
    <dc:date>2019-03-11T04:21:00Z</dc:date>
    <item>
      <title>TACACS RANCID Nexus issue - AAA_AUTHOR_STATUS_METHOD=16(0x10)</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-rancid-nexus-issue-aaa-author-status-method-16-0x10/m-p/2428979#M88351</link>
      <description>&lt;P&gt;I recently enabled command authorization on my Nexus switches and RANCID could no longer run. The error rancid reported was:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;AAA_AUTHOR_STATUS_METHOD=16(0x10)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;It was weird because the commands RANCID was running, could be ran just fine manually by calling the rancid clogin script. We have different groups setup in TACACS, one for network engineers, and one specifically for RANCID. If I moved the rancid user over to the neteng group it would run fine, so I noticed a difference was a tac_plus.conf stanza present for neteng but missing for rancid:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;default service = permit&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Directly underneath the group definition. After adding that to the rancid user, all was well.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 04:21:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-rancid-nexus-issue-aaa-author-status-method-16-0x10/m-p/2428979#M88351</guid>
      <dc:creator>Mister Cartwright</dc:creator>
      <dc:date>2019-03-11T04:21:00Z</dc:date>
    </item>
    <item>
      <title>TACACS RANCID Nexus issue - AAA_AUTHOR_STATUS_METHOD=16(0x10)</title>
      <link>https://community.cisco.com/t5/network-access-control/tacacs-rancid-nexus-issue-aaa-author-status-method-16-0x10/m-p/2428980#M88352</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Please check this forum: It is having the full configuration of AAA in Nexus:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.hellanetwork.com/2013/06/nx-os-security.html"&gt;http://www.hellanetwork.com/2013/06/nx-os-security.html&lt;/A&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 06 Feb 2014 06:09:03 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/tacacs-rancid-nexus-issue-aaa-author-status-method-16-0x10/m-p/2428980#M88352</guid>
      <dc:creator>Naveen Kumar</dc:creator>
      <dc:date>2014-02-06T06:09:03Z</dc:date>
    </item>
  </channel>
</rss>

