09-26-2007 01:34 PM - edited 07-03-2021 02:41 PM
Radius AAA works great until I have to change my windows password
(ie every 180 days). After changing password, I cannot access routers or switches.
The workaround is to reset my password back to the original password.
How do I get around this?
10-03-2007 06:08 PM
Send the following information from your IAS server to proceed for further troubleshooting.
1. Are you using any 802.1x/EAP authentication?
2. Send me the router/switch configurations relevant to AAA
3. Capture debug aaa authentication on your router/switch and send me the entire debug output captured. Based on that only, I can understand what is actually happening during the failed authentication.
10-05-2007 10:45 AM
10-05-2007 11:41 AM
Hi,
If you are using telnet then that is not supported as telnet uses PAP and password expiry is not supported by PAP (we need mschapv2)
.RADIUS-based Windows Password Aging-Users must be in the Windows user database and be using a RADIUS client/supplicant that supports changing passwords by using Microsoft-Challenge Authentication Handshake Protocol (MS-CHAP).
You can use this to change your password,
http://www.greyware.com/software/domainpassword/
Hope that helps
Regards,
~JG
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide