I believe that you can specify up to three methods of auth to use
for each aaa line.  the radius local says that first use Radius to auth
then after failing there use the Local Auth setup on the 5300.

Feel free to correct me if I am wrong here.

Jim

-----Original Message-----
From: Dale Frohman [mailto:[EMAIL PROTECTED]]
Sent: Thursday, March 15, 2001 10:23 AM
To: Adam Hickey
Cc: Dale Frohman; [EMAIL PROTECTED]
Subject: Re: AS5300 radius


i have 

aaa authentication ppp default local group radius

does the local make a difference?  would any other aaa settings have an
effect on my situation? this is the complete top half of the config:

aaa new-model
aaa authentication login default group radius local
aaa authentication login console none
aaa authentication login secure group radius enable
aaa authentication login vty line none
aaa authentication login dialup-login group radius local
aaa authentication ppp default local group radius
aaa authorization exec default if-authenticated group radius local
aaa authorization network default group radius if-authenticated local
aaa accounting update newinfo
aaa accounting network default start-stop group radius

On Thu, 15 Mar 2001, Adam Hickey wrote:

> I think it is just the matter of having...
> 
> aaa authentication ppp default group radius
> 
> in the config. It supposedly uses the list of radius servers configured.
> 
> Adam Hickey
> [EMAIL PROTECTED]
> CCNA CCNP (in progress)
> _____________________________
> "And One!"
> 
> 
> ----- Original Message -----
> From: "Dale Frohman" <[EMAIL PROTECTED]>
> To: <[EMAIL PROTECTED]>
> Sent: Thursday, March 15, 2001 7:25 AM
> Subject: AS5300 radius
> 
> 
> > Quick question for the group.  I have an AS5300 that i thought i had
setup
> > for two radius servers, however we had a situation where the primary
> > radius server went down and the 5300 did not switch to use the
secondary.
> > I had to remove the primary in order for the secondary to work.
> >
> > Here is what i had configured:
> >
> > radius-server host x.x.x.x auth-port 1812 acct-port 1813 non-standard
> > radius-server host x.x.x.x auth-port 1812 acct-port 1813 non-standard
> >
> > Thanks
> >
> >
> >
> > _________________________________
> > FAQ, list archives, and subscription info:
> http://www.groupstudy.com/list/cisco.html
> > Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]
> >
> 
> 

_________________________________
FAQ, list archives, and subscription info:
http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

_________________________________
FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html
Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

Reply via email to