<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Local Radius Authentication - Fails in Wireless</title>
    <link>https://community.cisco.com/t5/wireless/local-radius-authentication-fails/m-p/334347#M20648</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi !!&lt;/P&gt;&lt;P&gt;I have the same problem to authenticate with the db local.  &lt;/P&gt;&lt;P&gt;how you have resolved?  thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sat, 23 Jul 2005 16:01:11 GMT</pubDate>
    <dc:creator>marcoadolfo</dc:creator>
    <dc:date>2005-07-23T16:01:11Z</dc:date>
    <item>
      <title>Local Radius Authentication - Fails</title>
      <link>https://community.cisco.com/t5/wireless/local-radius-authentication-fails/m-p/334345#M20646</link>
      <description>&lt;P&gt;Hello all, &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Access Point 1230AG (c1200-k9w7-mx.123-2.JA)&lt;/P&gt;&lt;P&gt;Client Adapter ABG (PCI)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I am new to Wireless Lan configuration with Aironet products (first project). I am configuring an Access Point for a small LAN and i can not get local radius authentication working. The password always fails if I try: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;test aaa group radius xxxxx port 1812 new-code&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;although the password is matching..........&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;another thing is that in the configuration, it always defaults to 'nthash' mode. is this normal? in other words if i type: &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;radius-server local&lt;/P&gt;&lt;P&gt;user dgarnett password xxxx&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;when i do a 'show run' it displays as &lt;/P&gt;&lt;P&gt;user xxxx&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I also get the following during a debug:&lt;/P&gt;&lt;P&gt;There is no RADIUS DB Some Radius attributes may not be stored&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;any help greatly appreciated&lt;/P&gt;&lt;P&gt;_______________________________________&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ap#test aaa group radius dgarnett 123456789 port 1812 new-code&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Trying to authenticate with Servergroup radius&lt;/P&gt;&lt;P&gt;User rejected&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;ap#&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.535: RADIUS(00000000): Config NAS IP: 10.14.14.14&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.535: RADIUS(00000000): Config NAS IP: 10.14.14.14&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.535: RADIUS(00000000): sending&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.535: RADIUS(00000000): Send Access-Request to 10.14.14.14:1812 id 21645/14, len 64&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.535: RADIUS:  authenticator 9C C4 E8 64 80 8B 64 8A - E7 5F 0A 64 14 2F 5D B6&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.536: RADIUS:  User-Password       [2]   18  *&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.536: RADIUS:  User-Name           [1]   10  "dgarnett"&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.536: RADIUS:  Service-Type        [6]   6   Login                     [1]&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.536: RADIUS:  NAS-IP-Address      [4]   6   10.14.14.14&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.536: RADIUS:  Nas-Identifier      [32]  4   "ap"&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.537: RADSRV: Client dgarnett password failed&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.537: RADIUS: Received from id 21645/14 10.14.14.14:1812, Access-Reject, len 88&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.538: RADIUS:  authenticator 3C B3 9A 7F 61 27 3A A6 - 84 39 B6 DF 22 DF 45 26&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.538: RADIUS:  State               [24]  50&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.538: RADIUS:   FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF  [????????????????]&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.539: RADIUS:   FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF FF  [????????????????]&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.539: RADIUS:   6B 7C 18 EA F0 20 A4 E5 B1 28 0E BD 57 61 24 9A  [k|??? ???(??Wa$?]&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.539: RADIUS:  Message-Authenticato[80]  18  *&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.539: RADIUS(00000000): Received from id 21645/14&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.539: RADIUS(00000000): Unique id not in use&lt;/P&gt;&lt;P&gt;Feb 19 20:57:44.540: RADIUS/DECODE(00000000): There is no RADIUS DB Some Radius attributes may not be stored&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt; &lt;/P&gt;&lt;P&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 04 Jul 2021 17:28:35 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/local-radius-authentication-fails/m-p/334345#M20646</guid>
      <dc:creator>d-garnett</dc:creator>
      <dc:date>2021-07-04T17:28:35Z</dc:date>
    </item>
    <item>
      <title>Re: Local Radius Authentication - Fails</title>
      <link>https://community.cisco.com/t5/wireless/local-radius-authentication-fails/m-p/334346#M20647</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Just as an update.......I set this up authenticating to an external (ACSNT) Radius server and it authenticates successfully. But still will not for the local dbase. My goal is to use the Corporate ACS as primary and the local as backup. I think my problem has to do with the Radius attributes 24 (State) and 80 (Message Auth). I also think that it points back to the NTHash stuff. Please advise as I am not new security practices and wireless, but I am new to Cisco Wireless networking.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 19 Feb 2005 22:39:36 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/local-radius-authentication-fails/m-p/334346#M20647</guid>
      <dc:creator>d-garnett</dc:creator>
      <dc:date>2005-02-19T22:39:36Z</dc:date>
    </item>
    <item>
      <title>Re: Local Radius Authentication - Fails</title>
      <link>https://community.cisco.com/t5/wireless/local-radius-authentication-fails/m-p/334347#M20648</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi !!&lt;/P&gt;&lt;P&gt;I have the same problem to authenticate with the db local.  &lt;/P&gt;&lt;P&gt;how you have resolved?  thanks&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sat, 23 Jul 2005 16:01:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/local-radius-authentication-fails/m-p/334347#M20648</guid>
      <dc:creator>marcoadolfo</dc:creator>
      <dc:date>2005-07-23T16:01:11Z</dc:date>
    </item>
    <item>
      <title>Re: Local Radius Authentication - Fails</title>
      <link>https://community.cisco.com/t5/wireless/local-radius-authentication-fails/m-p/334348#M20649</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Yes this issue was resolved by upgrading from c1200-k9w7-mx.123-2.JA to c1200-k9w7-mx.123-2.JA2&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Good Luck&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Mon, 25 Jul 2005 02:10:24 GMT</pubDate>
      <guid>https://community.cisco.com/t5/wireless/local-radius-authentication-fails/m-p/334348#M20649</guid>
      <dc:creator>d-garnett</dc:creator>
      <dc:date>2005-07-25T02:10:24Z</dc:date>
    </item>
  </channel>
</rss>

