<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic tacacs+ authentication problem in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/tacacs-authentication-problem/m-p/2343514#M343288</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Colin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you share &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;show run ssh&lt;/P&gt;&lt;P&gt;show run aaa&lt;/P&gt;&lt;P&gt;show run aaa-server&lt;/P&gt;&lt;P&gt;test aaa-server&amp;nbsp; TACACS+&lt;/P&gt;&lt;P&gt; &lt;SPAN style="font-size: 10pt;"&gt;172.25.32.80&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt; username whatever&lt;/P&gt;&lt;P&gt; password whatever&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And provide the outputs&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;For more information about Core and Security Networking follow my website at &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://laguiadelnetworking.com"&gt;http://laguiadelnetworking.com&lt;/A&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;BR /&gt; &lt;BR /&gt;&lt;SPAN&gt;Any question contact me at &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:jcarvaja@laguiadelnetworking.com"&gt;jcarvaja@laguiadelnetworking.com&lt;/A&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;BR /&gt; &lt;BR /&gt;Cheers, &lt;BR /&gt; &lt;BR /&gt;Julio Carvajal Segura&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Mon, 09 Sep 2013 20:11:34 GMT</pubDate>
    <dc:creator>Julio Carvajal</dc:creator>
    <dc:date>2013-09-09T20:11:34Z</dc:date>
    <item>
      <title>tacacs+ authentication problem</title>
      <link>https://community.cisco.com/t5/network-security/tacacs-authentication-problem/m-p/2343513#M343287</link>
      <description>&lt;P&gt;I have a ASA services module running in a 6500&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have configured a firewalled vlan for management (172.25.50.x) and applied a permissive access list inbound and outbound to it&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I added the ASA as a client on the Cisco ACS (tacacs) server and double-checked the key&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;The ACS server can ping the firewall, and the firewall can ping the ACS server.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I've issued the following commands on the ASA&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa-server TACACS+ protocol tacacs+ &lt;/P&gt;&lt;P&gt;aaa-server TACACS+ max-failed-attempts 3 &lt;/P&gt;&lt;P&gt;aaa-server TACACS+ deadtime 10 &lt;/P&gt;&lt;P&gt;aaa-server TACACS+ (mgmt) host 172.25.32.80 &amp;lt;key&amp;gt; timeout 5&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authentication ssh console TACACS+&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;username &amp;lt;user&amp;gt; password &amp;lt;password&amp;gt; priv 15&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;when I ssh to the ASA, the firewall is not using tacacs+. It is using the local database instead.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;There is no activity i the ACS logs&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So the firewall isn't even attempting to use tacacs+&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Is there something I am missing here?&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 02:35:55 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tacacs-authentication-problem/m-p/2343513#M343287</guid>
      <dc:creator>Colin Higgins</dc:creator>
      <dc:date>2019-03-12T02:35:55Z</dc:date>
    </item>
    <item>
      <title>tacacs+ authentication problem</title>
      <link>https://community.cisco.com/t5/network-security/tacacs-authentication-problem/m-p/2343514#M343288</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Colin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Can you share &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;show run ssh&lt;/P&gt;&lt;P&gt;show run aaa&lt;/P&gt;&lt;P&gt;show run aaa-server&lt;/P&gt;&lt;P&gt;test aaa-server&amp;nbsp; TACACS+&lt;/P&gt;&lt;P&gt; &lt;SPAN style="font-size: 10pt;"&gt;172.25.32.80&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt; username whatever&lt;/P&gt;&lt;P&gt; password whatever&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;And provide the outputs&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;For more information about Core and Security Networking follow my website at &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://laguiadelnetworking.com"&gt;http://laguiadelnetworking.com&lt;/A&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;BR /&gt; &lt;BR /&gt;&lt;SPAN&gt;Any question contact me at &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:jcarvaja@laguiadelnetworking.com"&gt;jcarvaja@laguiadelnetworking.com&lt;/A&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;BR /&gt; &lt;BR /&gt;Cheers, &lt;BR /&gt; &lt;BR /&gt;Julio Carvajal Segura&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 09 Sep 2013 20:11:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tacacs-authentication-problem/m-p/2343514#M343288</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2013-09-09T20:11:34Z</dc:date>
    </item>
    <item>
      <title>tacacs+ authentication problem</title>
      <link>https://community.cisco.com/t5/network-security/tacacs-authentication-problem/m-p/2343515#M343289</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;When I did the test aaa-server it worked, and I realized I forgot to add&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;aaa authentication enable console TACACS+&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;to the ASA&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;this made everything work correctly. Thanks for your help!&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 10 Sep 2013 18:23:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tacacs-authentication-problem/m-p/2343515#M343289</guid>
      <dc:creator>Colin Higgins</dc:creator>
      <dc:date>2013-09-10T18:23:41Z</dc:date>
    </item>
    <item>
      <title>tacacs+ authentication problem</title>
      <link>https://community.cisco.com/t5/network-security/tacacs-authentication-problem/m-p/2343516#M343290</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hello Colin,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;So it was a problem with the enable password and not with the SSH authentication &lt;SPAN __jive_emoticon_name="grin" __jive_macro_name="emoticon" class="jive_macro jive_emote" src="https://community.cisco.com/4.5.4/images/emoticons/grin.gif"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Glad to know its up and running now &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN&gt;For more information about Core and Security Networking follow my website at &lt;/SPAN&gt;&lt;A class="jive-link-external-small" href="http://laguiadelnetworking.com"&gt;http://laguiadelnetworking.com&lt;/A&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;BR /&gt; &lt;BR /&gt;&lt;SPAN&gt;Any question contact me at &lt;/SPAN&gt;&lt;A class="jive-link-email-small" href="mailto:jcarvaja@laguiadelnetworking.com"&gt;jcarvaja@laguiadelnetworking.com&lt;/A&gt;&lt;SPAN&gt; &lt;/SPAN&gt;&lt;BR /&gt; &lt;BR /&gt;Cheers, &lt;BR /&gt; &lt;BR /&gt;Julio Carvajal Segura&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Tue, 10 Sep 2013 18:48:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/tacacs-authentication-problem/m-p/2343516#M343290</guid>
      <dc:creator>Julio Carvajal</dc:creator>
      <dc:date>2013-09-10T18:48:00Z</dc:date>
    </item>
  </channel>
</rss>

