cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1124
Views
0
Helpful
4
Replies

RADIUS AAA Config - can't console or exec

darkman_2099
Level 1
Level 1

Greetings,

Been trying to get RADIUS working on our network. All Cisco devices running 12.1(13)EA1a or 12.2(20)EW.

Config -

aaa new-model

aaa authentication login default local group radius

aaa authorization network default group radius

The server is all set up and I can log in with radius authentication no problem. I can not get it to enable with out using the default enable password. I also can not get into the switches using the console port with the RADIUS server down. Not good.

I tried the following commands for a back door to no avail -

aaa authentication login console line

aaa authentication login locale enable

aaa authentication login default local line - this just uses all defaults

aaa authentication login local line none - wide open

I am using Funk Software Steel Belted Radius on Solaris, Version 4.52.497.

4 Replies 4

Richard Burts
Hall of Fame
Hall of Fame

If you want radius to authenticate for enable mode try adding this to your config:

aaa authentication enable default group radius enable

This should use raduis to authenticate for enable and will use the configured password on the router if the radius server is not available.

HTH

Rick

HTH

Rick

vimal1980
Level 1
Level 1

Hi!

The Below Document will help you to achive all those stuffs.

http://www.cisco.com/en/US/products/sw/iosswrel/ps1835/products_configuration_guide_book09186a00800ca5b2.html

Rgds

Vimal

Thanks for the posts.

I have searched CISCO for so much, I don't know how I missed these documents. Did you search by IOS? Basically, is there a trick to searching the CISCO site?

I will read them and update tomorrow. I will also try that commnad. I think I tried it before but can't remember what happened. I don't think it worked, but I will let you all know.

Thanks so much for the replies.

JT

shansuresh
Level 1
Level 1

Hi

I am having problem getting the Cat3550s getting authenicating to the Radius server. Do you know where I can find some sample configurations. For the switch and the radius sever.

I am using Cisco Radius server.