cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
589
Views
0
Helpful
0
Replies

Switch Login with NPS radius problem

asmatjalal50795
Level 1
Level 1

Hi,

I am using Microsoft Network Policy Server 2019 As Radius server for my switches and so control logins using active directory groups.

From last one month I am scratching my head. I am very new to Radius so please help me.

I am getting this error.

 

Apr 12 21:33:19.738: RADIUS/ENCODE(0000001A):Orig. component type = Exec
Apr 12 21:33:19.738: RADIUS/ENCODE(0000001A): dropping service type,

"radius-server attribute 6 on-for-login-auth" is off
Apr 12 21:33:19.738: RADIUS(0000001A): Config NAS IP: 0.0.0.0
Apr 12 21:33:19.738: RADIUS(0000001A): Config NAS IPv6: ::
Apr 12 21:33:19.738: RADIUS/ENCODE(0000001A): acct_session_id: 6
Apr 12 21:33:19.738: RADIUS(0000001A): sending
Apr 12 21:33:19.738: RADIUS/ENCODE: Best Local IP-Address x.x.x.x for
Radius-Server x.x.x.x
Apr 12 21:33:19.742: RADIUS(0000001A): Send Access-Request to
x.x.x.x:1812 id 1645/13, len 68
Apr 12 21:33:19.742: RADIUS:  authenticator 97 FF 4D B6 E7 5D 22 81 -
42 21 2B AF F5 36 6B 03
Apr 12 21:33:19.742: RADIUS:  User-Name           [1]   6   "6038"
Apr 12 21:33:19.742: RADIUS:  User-Password       [2]   18  *
Apr 12 21:33:19.742: RADIUS:  NAS-Port            [5]   6   2
Apr 12 21:33:19.742: RADIUS:  NAS-Port-Id         [87]  6   "tty2"
Apr 12 21:33:19.742: RADIUS:  NAS-Port-Type       [61]  6   Virtual
               [5]
Apr 12 21:33:19.742: RADIUS:  NAS-IP-Address      [4]   6   x.x.x.x
Apr 12 21:33:19.742: RADIUS(0000001A): Sending a IPv4 Radius Packet
Apr 12 21:33:19.742: RADIUS(0000001A): Started 5 sec timeout
Apr 12 21:33:19.745: RADIUS: Received from id 1645/13 x.x.x.x:1812,
Access-Reject, len 20
Apr 12 21:33:19.745: RADIUS:  authenticator A9 5A 39 F6 D9 C9 81 69 -
7F 6E BC 13 D7 FF F7 04
Apr 12 21:33:19.745: RADIUS(0000001A): Received from id 1645/13
Apr 12 21:33:21.752: AAA/AUTHEN/LOGIN (0000001A): Pick method list 'default'
Apr 12 21:33:21.752: RADIUS/ENCODE(0000001A): ask "Password: "
Apr 12 21:33:21.752: RADIUS/ENCODE(0000001A): send packet; GET_PASSWORD
Apr 12 21:33:27.460: RADIUS/ENCODE(0000001A):Orig. component type = Exec
Apr 12 21:33:27.460: RADIUS/ENCODE(0000001A): dropping service type,
"radius-server attribute 6 on-for-login-auth" is off
Apr 12 21:33:27.460: RADIUS(0000001A): Config NAS IP: 0.0.0.0
Apr 12 21:33:27.460: RADIUS(0000001A): Config NAS IPv6: ::
Apr 12 21:33:27.460: RADIUS/ENCODE(0000001A): acct_session_id: 6
Apr 12 21:33:27.460: RADIUS(0000001A): sending
Apr 12 21:33:27.460: RADIUS/ENCODE: Best Local IP-Address x.x.x.x for
Radius-Server x.x.x.x
Apr 12 21:33:27.460: RADIUS(0000001A): Send Access-Request to
x.x.x.x:1812 id 1645/14, len 68
Apr 12 21:33:27.460: RADIUS:  authenticator EC D0 EC 4E 63 33 A3 F1 -
20 56 3E D5 42 6A C1 89
Apr 12 21:33:27.460: RADIUS:  User-Name           [1]   6   "6038"
Apr 12 21:33:27.463: RADIUS:  User-Password       [2]   18  *
Apr 12 21:33:27.463: RADIUS:  NAS-Port            [5]   6   2
Apr 12 21:33:27.463: RADIUS:  NAS-Port-Id         [87]  6   "tty2"
Apr 12 21:33:27.463: RADIUS:  NAS-Port-Type       [61]  6   Virtual
               [5]
Apr 12 21:33:27.463: RADIUS:  NAS-IP-Address      [4]   6   x.x.x.x
Apr 12 21:33:27.463: RADIUS(0000001A): Sending a IPv4 Radius Packet
Apr 12 21:33:27.463: RADIUS(0000001A): Started 5 sec timeout
Apr 12 21:33:27.470: RADIUS: Received from id 1645/14 x.x.x.x:1812,
Access-Reject, len 20
Apr 12 21:33:27.470: RADIUS:  authenticator 59 4A F8 6F 95 7A D7 01 -
0A 35 11 71 44 6B 6C A7
Apr 12 21:33:27.470: RADIUS(0000001A): Received from id 1645/14
Apr 12 21:33:29.476: AAA/AUTHEN/LOGIN (0000001A): Pick method list 'default'
Apr 12 21:33:29.476: RADIUS/ENCODE(0000001A): ask "Password: "
Apr 12 21:33:29.476: RADIUS/ENCODE(0000001A): send packet; GET_PASSWORD

0 Replies 0
Review Cisco Networking for a $25 gift card