TACACS authentication not using local keyword
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-08-2017 04:00 AM - edited 02-21-2020 06:40 AM
Hi ,
I am below issue on my ASA 5520.
I tried configuring Tacacs authentication on ASA using below config :
Aaa-server tacacs...
aaa-server host...
key..
aaa auth ssh console tacacs LOCAL
The problem is when I configure the above command , it shows range already exists.
I tried no aaa auth ssh console LOCAL also but even after that it gives same message that range already exists.
It's only taking aaa auth ssh console tacacs .
My version is 8.2. However I faced the same issue on 9.1.7 also.
can anyone fix it ?
- Labels:
-
NGFW Firewalls
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-08-2017 06:27 AM
Are there any other "aaa authentication ..." commnds in your config? If yes, remove them all and configure aaa from scratch. That should work.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-08-2017 10:29 AM
There are no other aaa commands.
- Mark as New
- Bookmark
- Subscribe
- Mute
- Subscribe to RSS Feed
- Permalink
- Report Inappropriate Content
11-08-2017 04:02 PM
hi,
try to reboot the ASA. if it still doesn't take the secondary method of LOCAL, then do an image upgrade.
