cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1820
Views
0
Helpful
1
Replies

Tacacs do not function in Nexus 5000

Dear Mister

By someone reason, the Tacas is not functioning in my Nexus 5000. I am using the next configuration :

tacacs-server key 7 "0310551D121F2D595D"

ip tacacs source-interface Vlan5

tacacs-server host 10.20.2.80

tacacs-server host 10.20.16.138

aaa group server tacacs+ TACSERVER

    server 10.20.2.80

    server 10.20.16.138

    source-interface Vlan5

    use-vrf default

aaa authentication login default group TACSERVER

no aaa user default-role

aaa authentication login error-enable

tacacs-server directed-request

I did a telnet to port 49, in address , and is functioning. That discard a Security problem (FW, ACL, etc).

When I do the test, nothing is showed in the Tacacs Logs Server.

The log messages are the next:

2012 Aug 22 15:54:45 NITE1 %TACACS-3-TACACS_ERROR_MESSAGE: received bad authentication packet from 10.20.2.80

2012 Aug 22 15:54:45 NITE1 %TACACS-3-TACACS_ERROR_MESSAGE: All servers failed to respond

2012 Aug 22 15:54:48 NITE1 %AUTHPRIV-3-SYSTEM_MSG: pam_aaa:Authentication failed for user GPALAVE from 10.20.2.80 - login[3087]

The problem is very strange.

I need help.

Best regards

1 Reply 1

Jerry Ye
Cisco Employee
Cisco Employee

You config looks fine. Can you ping from VLAN5 to TACACS+? Also, did you add VLAN5's IP address to your TACACS+.

Regards,

jerry

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: