I am running ACS 3.0 build 40 on NT SP6; Raptor 6.5 on NT SP6
I am having a problem with raptor authenticating against multiple RADIUS servers. When I configure raptor to use one RADIUS server everything works ok. As soon as I configure raptor to use a second ACS server all authentication fails!
If I do a network trace I see raptor send the request to the RADIUS server. Then all I see is an access-reject paacket sent back to the firewall. RADIUS doesn't even query the NT domain I have configured for external auth.
I wondering, could raptor be munging the radius access-request packet to a point where RADIUS just automatically rejects it? I have examined the packets and the only difference between a working packet and a packet that fails is the Request authenticator and the user password fields. Is there a utility to decrypt the user password field to see if raptor is sending the correct info?
Re: Symantec Raptor Authenticating against ACS RADIUS
Since there has been no response to your post, it appears to be either too complex or too rare an issue for other forum members to assist you. If you don't get a suitable response to your post, you may wish to review our resources at the online Technical Assistance Center (http://www.cisco.com/tac) or speak with a TAC engineer. You can open a TAC case online at http://www.cisco.com/tac/caseopen
If anyone else in the forum has some advice, please reply to this thread.
DocumentationCode download linksGoalRequirementLimitationsSupported ISR and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and UCS-E Blades:Step by Step ConfigurationConfigure one of the connectivity options to access the Cisco IMC from the n...
Firepower Threat Defense (NGFWv) on UCS E-series - Transparent Mode in HA
DocumentationCode download linksGoalRequirementLimitationsSupported ISR and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and UCS-E Blades:Step by Step ConfigurationCo...
I am currently unable to specify "crypto keyring" command when configuring VPN connection on my cisco 2901 router.
The following licenses have been activated on my router :