cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1826
Views
0
Helpful
1
Replies

ACS 3.0 - Router authentication over WAN

utambe
Level 1
Level 1

The router has been to configured for AAA from ACS over 64 Kbps location. Router attempts to obtain authentication info from server but fails (ERROR) and jumps to next authentication option (local or none). Router ver:12.07T .

The ACS client IP address in ACS entered is ethernet IP of the router to be authenticated.

Any clue to overcome this ???

1 Reply 1

tepatel
Cisco Employee
Cisco Employee

If the ACS server is reachable over the wan interface of the router then you need to have ip address of WAN interface as the client IP address in ACS..Router will source the packets from the interface ip address over which its reachable..unless you modified it using "ip radius/tacacs source-interace...." If aaa receive the packets from ip address which is not defined in the client, it will not respond.

So try putting the ip address of the WAN interface as the client ip address in the ACS..