Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
New Member

SSH & AAA issue on IOS

Hello,

I have a 3750 with SSH issues. The only way I can connect is via console connection and when I connect it asks for my TACACS id and pwd. I have verified all firewalls and there is no ACL blocking this traffic. but I do see a reset-O on the firewall from the device´s side.

I want to enable the following debugs to see what´s happening when I try to ssh to the device over the network but how can enable these debugs when I am in a console connection? I just want the output of these debugs to show up.

debug ip ssh

debug aaa athenticaiton

Logging settings:

Syslog logging: enabled (0 messages dropped, 0 messages rate-limited, 0 flushes, 0 overruns, xml disabled, filtering disabled)
    Console logging: level informational, 2915 messages logged, xml disabled,
                     filtering disabled
    Monitor logging: level debugging, 69 messages logged, xml disabled,
                     filtering disabled
    Buffer logging: level informational, 2915 messages logged, xml disabled,
                    filtering disabled
    Exception Logging: size (4096 bytes)
    Count and timestamp logging messages: enabled
    File logging: disabled
    Trap logging: level debugging, 3112 message lines logged
        Logging to x.x.x.x, 2945 message lines logged, xml disabled,
               filtering disabled

3 REPLIES

Re: SSH & AAA issue on IOS

You need to change your console logging level from information to debug.

logging console debug

Hope it helps.

New Member

Re: SSH & AAA issue on IOS

Thanks but would that only make those 2 debugs show up? or all logging would go to the console ?

Thanks

Re: SSH & AAA issue on IOS

Think about logging as water flowing into your house. In certain areas, like a bathroom sink, you don't want the full force of all the water, you want just enough to fill up the sink or wash your face. This would relate to information level. You see some alerts (informational and below). In your bath tub you want the full force of the water supply because you need to fill the entire tub with water. This is like debug, send me everything you have. Logging is not sent to specific areas, it is restricted by level to specific areas. In your case currently the console is logging informational and you want debug. If you look at your Monitor level, you can see it is allowing all debugs, while your buffer is only allowing informational.

344
Views
0
Helpful
3
Replies
CreatePlease to create content