Use aaa new-model

Unanswered Question

We use windows 2003 IAS and try to configure aaa new-model for authenticate to Cisco router and switch.


We have no problem at switch, but cant make it work at router with same configuration:


Here is the configuration:


aaa new-model

aaa authentication login default group radius local

aaa authorization exec default group radius local


radius-server host 10.x.x.100 auth-port 1645 acct-port 1646 key pass

radius-server host 10.x.x.101 auth-port 1645 acct-port 1646 key pass



I apply same config at the router, but doesn't, which I have no clue why.


Thanks


Ken

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
Farrukh Haroon Sun, 08/03/2008 - 18:42
User Badges:
  • Red, 2250 points or more

It seems you have a space after your shared secret as in 'pass ' no both lines, try to reenter the command without the space, then use the 'test aaa' command to verify this. If you go to the IAS server logs, you might find a shared secret mismatch.


Regards


Farrukh

Actions

This Discussion