cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
432
Views
0
Helpful
3
Replies

Authentication on 3750 against ACS

aksher
Level 1
Level 1

After making AAA changes on the catalyst 3750 the key configuration part was missed and the login attempt on the switch is getting failed now. There are no logs in the "failed attempts" on the ACS. What is the solution now?

3 Replies 3

Richard Burts
Hall of Fame
Hall of Fame

Aksher

I am not clear about several things in your post. You describe it as making changes, so does that mean that it was configured and was working and you changed something and now it is not working or does it mean something else?

If it was working and you changed something, then what did you change?

When you say that there are no logs in the failed attempts on ACS does that include no messages about attempt from unknown host?

If there are really no logs in the failed attempts from the 3750 then that may imply that there is an IP connectivity problem. Can you verify (by ping or anything else) that there is connectivity from 3750 to ACS and from ACS to 3750?

If this does not help you resolve your issue then perhaps you can clarify some of the things that I asked.

HTH

Rick

HTH

Rick

Mehdi_ab
Level 1
Level 1

What do u mean by the key configuration part was missed? Either there is a connectivity problem or secretkey config wasn't done correctly...

We'll need more details.

Sounds like you did not complete the AAA configs enough so that the 3750 can use acs for auth.

Also there was no backup configured to use the line or local passwords in the event that acs becomes unavailable. Can you get in via the console?

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: