Authenticate and authorize vty 0 4 and vty 5 15 telnet sessions
We use WLSM as WDS, WLSE, Cisco ACS and AP1210's. The infrastructure AP's authenticate with the WLSM. Both MAC Authentication and LEAP authentication work. SSID assignment is functioning properly. I can not get telnet users to authenticate and authorize properly. I have had to renter the aaa new-model with all supporting entries. The ACS server says the authorization or authentication fails with an unknown NAS. The AP with its key is entered in the ACS. It takes 60 - 90 seconds for the AP to log a user in. Any articles or instructions would be appreciated. See typical infrastructure AP config atttached.
Re: Authenticate and authorize vty 0 4 and vty 5 15 telnet sessi
The problem has been resolved. As a general note all authentication and authorization for console or vty 0-15 login, exec and commands is processed by the AP it is NOT sent to the WDS. The problem is the infrastructure AP is authenticated by LEAP through the WDS to the ACS so the infrastructure AP is entered in the ACS as using radius(cisco aironet). To get around this I put the infrastructure AP in ACS with a different name but the same IP and key and selected tacacs. Works like a dream.
Transferring Crash file from standby:
Login to the Active WLC in HA.
(Cisco Controller) >transfer upload datatype crash
(Cisco Controller) >transfer upload filename <Desired filename>
(Cisco Controller) >transfer up...
This is the start of a display filter cross reference between Wireshark and OmniPeek.
The 1st installment is a table of advanced filters. More filters will be added as time allows.
It is a living doc, so check back for changes every so often
Please feel ...
I have created a Powershell script to automatically add a Wireless Guest User on Cisco WLCs. (tested on 2500 Series)
The script should be completely self explanatory.
Powershell SNMP Module (Install-Module -Name SNMP)
SNMP Write Access to...