question about TACACS+ router configuration

Unanswered Question
Jun 29th, 2009


I try to setup my 1720 Cisco Router to use a TACACS+ server for authentification and eventually authorisation for administration purpose. I have setup my router as it is in the attached file (my_router_configuration.txt)... For some reason, my TACACS Server look like never received authentification request.... is something is missing in the configuration on my Cisco router.

my IOS is : c1700-y-mz.120-7.T

I also try why other router with more recent IOS which is : c1700-y-mz.123-26.bin and I have the same problem with this one...

I have my loggin level to debug but nothnig is appears in the log file of the router.... same as on the TACACS server....

This attemp configuration was complete with ClearBox Server TACACS Software, but I was also try with our new ACS server last week and I have obtain same result.... (last weak I was working for a different production environnement then today.....) We will have both solution running when all will be complete.... on of those should be very less expensive then the ACS solution Server, and running on Windows server.

could some can help me ?

Thanks a lot in advance !

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 4 (1 ratings)
ansalaza Mon, 06/29/2009 - 10:56

Try enabling these debugs:

Debug aaa authentication

Debug tacacs

term mon

What IOS Version do you have? 12.0

show version.

xine xine Thu, 07/09/2009 - 18:25

I forgot to check IOS version but I was only activate "Debug aaa authentication" after activate also "Debug tacacs" now I see it's the ACS is not responding to my 1720 router....

Jagdeep Gambhir Mon, 06/29/2009 - 11:12

Please try setting up source interface for tacacs ,

ip tacacs source interface x.x.x.x

Where x.x.x.x is the router IP listed in ACS --->Network configuration--->aaa clients--->1720



Do rate helpful posts

xine xine Thu, 07/09/2009 - 18:23

Sorry but I'm not understanding your answer....

I'm using ASC Solution Engine and running version 4.2 software...


This Discussion