cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
389
Views
0
Helpful
3
Replies

Tacacs+ admin in AP1200 with IOS

We have configured admin authentication by tacacs+ and, when we access through web browser, the auth window pop-up is showed, we authenticate, and after some seconds a new window appears. And this a lot of times. There are a lot of entries in the tacacs+ server (ACS v3.1), too.

If we access by telnet, everything is Ok. (Only one authentication).

TIA

3 Replies 3

thomas.chen
Level 6
Level 6

Thank you for the link, but we have IOS-based AP1200, and the web management is quite different from Vxvorks. Do know any other link about tacacs+ administration through web with IOS-based?

TIA

I'm having the same issue. I'm running 12.2(13)JA on a 350 ap; my TACACS+ box is tac_plus running on a FreeBSD 5.1-RELEASE build.

debug aaa authentication shows:

====================================================

000079: .Nov 24 21:03:32.984: AAA: parse name=tty2 idb type=-1 tty=-1

000080: .Nov 24 21:03:32.988: AAA: name=tty2 flags=0x11 type=5 shelf=0 slot=0 adapter=0 port=2 channel=0

000081: .Nov 24 21:03:32.988: AAA/MEMORY: create_user (0x93BDB8) user='NULL' ruser='NULL' ds0=0 port='tty2' rem_addr='192.168.x.x' authen_type=ASCII service=LOGIN priv=0 initial_task_id='0', vrf= (id=0)

000082: .Nov 24 21:03:32.988: AAA/AUTHEN/START (1411533082): port='tty2' list='' action=LOGIN service=LOGIN

000083: .Nov 24 21:03:32.988: AAA/AUTHEN/START (1411533082): non console login - defaults to local database

000084: .Nov 24 21:03:32.992: AAA/AUTHEN/START (1411533082): Method=LOCAL

000085: .Nov 24 21:03:32.992: AAA/AUTHEN(1411533082): Status=GETUSER

000086: .Nov 24 21:03:32.992: AAA/AUTHEN/CONT (1411533082): continue_login (user='(undef)')

000087: .Nov 24 21:03:32.992: AAA/AUTHEN(1411533082): Status=GETUSER

000088: .Nov 24 21:03:32.992: AAA/AUTHEN/CONT (1411533082): Method=LOCAL

000089: .Nov 24 21:03:32.996: AAA/AUTHEN(1411533082): Status=GETPASS

000090: .Nov 24 21:03:32.996: AAA/AUTHEN/CONT (1411533082): continue_login (user='xxxxx')

000091: .Nov 24 21:03:32.996: AAA/AUTHEN(1411533082): Status=GETPASS

000092: .Nov 24 21:03:32.996: AAA/AUTHEN/CONT (1411533082): Method=LOCAL

000093: .Nov 24 21:03:32.996: AAA/AUTHEN(1411533082): Status=PASS

000094: .Nov 24 21:03:33.112: AAA/MEMORY: free_user (0x93BDB8) user='xxxxx' ruser='NULL' port='tty2' rem_addr='192.168.x.x' authen_type=ASCII service=LOGIN priv=0 vrf= (id=0)

000095: .Nov 24 21:03:37.444: AAA: parse name=tty2 idb type=-1 tty=-1

000096: .Nov 24 21:03:37.444: AAA: name=tty2 flags=0x11 type=5 shelf=0 slot=0 adapter=0 port=2 channel=0

000097: .Nov 24 21:03:37.448: AAA/MEMORY: create_user (0x93BDB8) user='NULL' ruser='NULL' ds0=0 port='tty2' rem_addr='192.168.x.x' authen_type=ASCII service=LOGIN priv=0 initial_task_id='0', vrf= (id=0)

000098: .Nov 24 21:03:37.448: AAA/AUTHEN/START (2224183919): port='tty2' list='' action=LOGIN service=LOGIN

000099: .Nov 24 21:03:37.448: AAA/AUTHEN/START (2224183919): non console login - defaults to local database

000100: .Nov 24 21:03:37.448: AAA/AUTHEN/START (2224183919): Method=LOCAL

000101: .Nov 24 21:03:37.452: AAA/AUTHEN(2224183919): Status=GETUSER

000102: .Nov 24 21:03:37.452: AAA/AUTHEN/CONT (2224183919): continue_login (user='(undef)')

000103: .Nov 24 21:03:37.452: AAA/AUTHEN(2224183919): Status=GETUSER

000104: .Nov 24 21:03:37.452: AAA/AUTHEN/CONT (2224183919): Method=LOCAL

000105: .Nov 24 21:03:37.452: AAA/AUTHEN(2224183919): Status=GETPASS

000106: .Nov 24 21:03:37.456: AAA/AUTHEN/CONT (2224183919): continue_login (user='xxxxx')

000107: .Nov 24 21:03:37.456: AAA/AUTHEN(2224183919): Status=GETPASS

000108: .Nov 24 21:03:37.456: AAA/AUTHEN/CONT (2224183919): Method=LOCAL

000109: .Nov 24 21:03:37.456: AAA/AUTHEN(2224183919): Status=PASS

000110: .Nov 24 21:03:37.568: AAA/MEMORY: free_user (0x93BDB8) user='xxxxx' ruser='NULL' port='tty2' rem_addr='192.168.x.x' authen_type=ASCII service=LOGIN priv=0 vrf= (id=0)

=====================================================

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card