cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
423
Views
0
Helpful
1
Replies

ACS + AAA + connection through console

mkazmierski
Level 1
Level 1

Hello,

I have the following situation. In ACS I have local account (XYZ) and account connected with Windows domain (XYZ.domain).

I have Cisco C3750-IPBase-M (ver 12.2(35)) and following situation: when I connect through vty line (telnet/ssh) my AAA model works correctly and I automatically get to priv mode (in both cases: account XYZ and XYZ.domain). When I connect through console I get to normal mode for both accounts. When I type enable and enter the same password as access for account XYZ I successfully get to priv, but when I type enable and enter the same password as access for account XYZ.domain I cannot get to priv:(. Any clues how Cisco govern such access? Thanks!

regards, Mark

1 Reply 1

Daniel Laden
Level 4
Level 4

since the vty line are configured to go to enable mode, the enable password is not used. It is being used for the accounts in console.

I am quessing there are different account XYZ and XYZ.domain. Review the enable password setting for these.

What does the ACS failed log say.