cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
703
Views
0
Helpful
4
Replies

Domain Authentication for console

CiscogeekIND
Level 1
Level 1

Hi

we have software basec cisco ACS 4.1 and we have integrated with ADS server, here the problem is for telnet ssh domain credentials are working but where as for console it is not working it is not even taking the local login credetilas (If local logins username is same as Domain username then we are able to login to switch using local password).

I observed below log is creating when i try to login through console. (failed attempts log)

"Windows domain controller not found"

Your comments & suggestions will be appreciated.

4 Replies 4

Erick Delgado
Level 1
Level 1

Hi,

Could you please attach the lines configuration and the aaa configuration?

I would like to check your configuration before making any suggestion

Regards,

Hi

provided the requested information.

Thanks - Suresh

Jatin Katyal
Cisco Employee
Cisco Employee

Did you try logging to console using the same username/password the one you tried for telnet/ssh?


Also help me with the following outputs:


sh run | in user

sh run | in aaa


debug aaa common 255

debug radius/tacacs


Latest hits from the ACS > failed attempts (Just wanted to double check that we are getting the same hit).


As you said if the local user name is created same as domain user name then it works. This indicates that even you try with local username password, the request is going to radius server proxied to external DB.


HTH


Regards,

JK


Plz rate helpful posts-

~Jatin

Hi Erik/JK

I got the solution, there was Network access restrictions. resloved the same

Thanks _ Suresh

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: