cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
461
Views
0
Helpful
1
Replies

Unusual TACACS behaviour

nerdv
Level 1
Level 1

Hello All,

Never seen this behaviour from a tacacs+ server before. can someone who had a change to fix this help me here.

show tac

Server: x.y.z.w/49: opens=11 closes=11 aborts=0 errors=0

packets in=11 packets out=11 timeout=0 connection_fails=0

no connection

the above output shows that there is vaild connection to the tacacs+ server

but when i debug here is what i get and i am not getting a tacacs+ login

attached is tacacsdebug i did on this box. the box in question is a cisco catalyst 6509

tx

sidd

1 Reply 1

Richard Burts
Hall of Fame
Hall of Fame

Sidd

I am not sure but it looks to me like your catalyst is sending authentication requests to tacacs and is getting responses which deny the authentication. Have you looked on the tacacs server? I assume that there should be some entry in the failed attempts report that would confirm that the server saw the request and hopefully it would have better information about why it did not authenticate the request.

HTH

Rick

HTH

Rick