Re: Tacacs help required [7:71818]

2003-07-04 Thread Devrim Yener KUCUK
It seems we are getting the LCP I 00:27:39: BR0:1 LCP: I TERMREQ [Open] id 3 len 4 not very clear, in fact why is the remote sending LCP O TERM could you collect? (from remote) deb ppp neg deb ppp authen deb aaa author deb isdn q931 deb tacacs regards devvv - Original Message

Tacacs help required [7:71818]

2003-07-04 Thread Shane Stockman
1720 router with 128K primary link and ISDN Backup. Problem When primary link falls ISDN backup has authentications problems due to tacacs on both sides (Remote and HQ). Here is my Remote side config and debug aaa new-model aaa authentication login default group tacacs+ local aaa authentication

Tacacs help required [7:71818]

2003-07-03 Thread Shane Stockman
1720 router with 128K primary link and ISDN Backup. Problem When primary link falls ISDN backup has authentications problems due to tacacs on both sides (Remote and HQ). Here is my Remote side config and debug aaa new-model aaa authentication login default group tacacs+ local aaa authentication

Tacacs help required [7:71783]

2003-07-02 Thread Shane Stockman
1720 router with 128K primary link and ISDN Backup. Problem When primary link falls ISDN backup has authentications problems due to tacacs on both sides (Remote and HQ). Here is my Remote side config and debug aaa new-model aaa authentication login default group tacacs+ local aaa authentication

Re: RADIUS v TACACS [7:70968]

2003-06-22 Thread annlee
RADIUS does encrypt the passwords, using MD5 IIRC. Annlee ""Sales"" wrote in message news:[EMAIL PROTECTED] > Hi, > > With tacacs+ you can certainly use one time passwords for 2 factor > authentication such as SecureID. Tacacs+ is great if you need multiple >

RE: RADIUS v TACACS [7:70968]

2003-06-21 Thread Sales
Hi, With tacacs+ you can certainly use one time passwords for 2 factor authentication such as SecureID. Tacacs+ is great if you need multiple privilege levels on a router. For example you limit commands for Tier I and open them up for Tier II. I'm not sure that Radius can do that. Als

OT: RADIUS v TACACS [7:70968]

2003-06-20 Thread Dom
I've just been asked the following by an old friend - "A quick question. If one uses TACACS Do you know what choices are there for handheld One Time Password generators, like RSA, secureID, etc. I am just about to make alternative choices for a replacement of our Vasco RADIUS ser

RE: TACACS - Cheap or Free [7:70764]

2003-06-17 Thread Nikolay Abromov
Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=70784&t=70764 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

RE: TACACS - Cheap or Free [7:70764]

2003-06-16 Thread Moffett, Ryan
how about tac_plus from Cisco, also found on several other places around the 'net? It's free, and open source. -Original Message- From: Vance Krier [mailto:[EMAIL PROTECTED] Sent: Monday, June 16, 2003 9:23 PM To: [EMAIL PROTECTED] Subject: TACACS - Cheap or Free [7:70764]

TACACS - Cheap or Free [7:70764]

2003-06-16 Thread Vance Krier
Hey Group, I'm just looking for a cheap or free TACACS+ server. This doesn't need to be real powerful, just something I can use for playing around and possibly to put on customer sites for real quick and easy outbound http auth authentication purposes off a PIX. Thanks, Vance Mess

TACACS+ Command Accounting - - Null command in log [7:65479]

2003-03-14 Thread Bob Sinclair
ot; column is blank. Configuration below. Any help greatly appreciated. aaa new-model aaa authentication login default group tacacs+ line aaa authentication enable default group tacacs+ enable aaa authorization commands 1 default group tacacs+ local aaa authorization commands 15 default group tac

RE: TACACS password encryption [7:60886]

2003-01-12 Thread Mike Sweeney
I just ran a trace showing a telnet session from a desktop to the terminal server which uses TACACS to provide authentication. The telnet session where I typed in the password is plain text.. this is in response to the terminal server prompt. The actual username/password between the terminal

TACACS password encryption [7:60886]

2003-01-11 Thread Paul Dong So
Hi all, Am reading cramsession notes and there are statement like this: 1. The entire body of Tacacs+ packet is encrypted is ther is a shared key on the router and server. 2. Tacacs transmits passwords in clear text Dont' they conflict? Is the user password encrypted or not? Thanks

Re: TACACS+ & AS5300 [7:58977]

2002-12-11 Thread Andrew Dorsett
On Wed, 11 Dec 2002, Mamoon Dawood wrote: > I'm configuring TACACS+ with AS5300, but I can not understand the > meaning of TACACS+ or RADIUS Key, is it the enable secret password on > the AS5300? No, radius uses a key that you enter to provide for the encrypt/decrpt of the aut

TACACS+ & AS5300 [7:58977]

2002-12-11 Thread Mamoon Dawood
Dear All, =20 I'm configuring TACACS+ with AS5300, but I can not understand the meaning of TACACS+ or RADIUS Key, is it the enable secret password on the AS5300? =20 Regards, Mamoon [GroupStudy.com removed an attachment of type image/gif which had a name of Blank Bkgrd.gif] Me

Per user config on CISCO using TACACS [7:57970]

2002-11-23 Thread Stephane Litkowski
Hi all, I tried to test some tacacs config with VPDN. The purpose was to implement per user interface & router config. I observed that I cannot use some commands like "ip vrf forwarding" or "service-policy" or "ip rtp priority" in the interface config AVPAIR (but

Re: Tacacs Server for Switches [7:57074]

2002-11-09 Thread Oliver Hensel
There is a much improved version of the Cisco TACACS daemon on http://www.gazi.edu.tr/tacacs/ which is what everyone I know of is running... YMMV Oliver mike greenberg sagte: > If you are good with unix/linux, download the freeware source code from > cisco website and use it. It's f

Re: Tacacs Server for Switches [7:57074]

2002-11-07 Thread mike greenberg
If you are good with unix/linux, download the freeware source code from cisco website and use it. It's free. I use freeRadius running on linux which works great. "[EMAIL PROTECTED]" wrote:Any sugestion for free Tacacs server ? Thanks Do you Yahoo!? U2 on LAUNCH - Exclusive

Tacacs Server for Switches [7:57074]

2002-11-07 Thread [EMAIL PROTECTED]
Any sugestion for free Tacacs server ? Thanks Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=57074&t=57074 -- FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report miscon

PIX, VPN and TACACS [7:55689]

2002-10-16 Thread Tomasz Minkowski
I Have a remote access VPN an my PIX, and XAuth through tacacs. Now I want to create access-list, depending on a user to forbid some vpn clients reach some host in the internal network, but I can't make tacacs and PIX work together. Can somebody help? Message Posted at:

RE: TACACS/RADIUS on CISCO Router [7:53621]

2002-09-22 Thread Nathan Nakao
Michael, For security reasons, I'd really not recommend using a router for a tacacs or radius server. If someone cracks the routers security, they have access to all usernames and password. Personally, I'd use a simple linux machine for radius authentication. Even an LDAP auth

Re: TACACS/RADIUS on CISCO Router [7:53621]

2002-09-22 Thread Dain Deutschman
just using a local username database ""exchange"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Hey, > > is there a possibility to set up a router acting > as a radius or tacacs server with local authentication > without extern

RE: TACACS+ [7:53721]

2002-09-20 Thread Blair, Philip S
Mike, I guess your reading comprehension skills are on par with your tact. The original post was in regards to SSH and TACACS, and my reply to that post was to point out the functional difference between SSH or Telnet access and TACACS. The conversion between the client and router is encrypted

RE: TACACS+ [7:53721]

2002-09-20 Thread mike greenberg
Now I know why EDS stock is taking a beating When you use TACACS+, you basically offload the authentication, authorization and accounting to the TACACS+ server (running on your Linux box). If you don't want people to connect to your routers via telnet, set the vty line on your route

RE: TACACS+ [7:53721]

2002-09-20 Thread Blair, Philip S
Your passwords are encrypted with SSH between the client and router, between the router and tacacs server your tacacs key is used. I use tac_plus with clients that use a combination of SSH and telnet. Some routers require SSH some basic telnet is allowed. I have no special configurations within

TACACS+ [7:53721]

2002-09-20 Thread Erich Kuehn
Im trying to setup tacacs+ for aaa on my routers. I have downloaded and installed tacplus from cisco on a linux box (RH7.3). Im looking for some examples of config files for the tac_plus executable. Currently we use SSH and local logins for authentication, I would like to continue to use SSH to

Re: TACACS/RADIUS on CISCO Router [7:53621]

2002-09-19 Thread Robert Edmonds
gt;news:[EMAIL PROTECTED]... > Hey, > > is there a possibility to set up a router acting > as a radius or tacacs server with local authentication > without external server ? > > Please let me know > > best regards > > Michael

TACACS/RADIUS on CISCO Router [7:53621]

2002-09-19 Thread exchange
Hey, is there a possibility to set up a router acting as a radius or tacacs server with local authentication without external server ? Please let me know best regards Michael Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=53621&

Heeelp with tacacs [7:48729]

2002-07-13 Thread babe Meneses
Hi All, I need your help, I am working with a PIX and am authenticating with tacacs plus Extended, I have enable the accounttng in the PIX and the tacacs I have maxses=1, but a user can to authenticate in many work stations. The authentication is for http. Configuration for authentication for

PIX and Tacacs [7:48620]

2002-07-11 Thread babe Meneses
Hi all, I am configuring a PIX with tacacs to authenticate at the users, this work fine, But I now I want to apply access list a the users, for example for my user dialup I used: group = mail { maxsess = 1 service = ppp protocol = ip { inacl=180 } service = ppp

Re: TACACS - Radius password authentication [7:47897]

2002-07-01 Thread Rick
You mind sharing your public key so I can encrypt the super secret search engine. :) ""Roberts, Larry"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Normally you would have a TACACS/RADIUS server ( Cisco's ACS comes to mind ) > and

RE: TACACS - Radius password authentication [7:47897]

2002-07-01 Thread Roberts, Larry
Normally you would have a TACACS/RADIUS server ( Cisco's ACS comes to mind ) and a TACACS/RADUS client ( Router/WAP also come to mind) In order for those two devices to communicate you must specify a password that is "shared" between them. This is used to assure that the Devices

RE: TACACS - Radius password authentication [7:47897]

2002-07-01 Thread Dan Penn
, July 01, 2002 5:09 PM To: [EMAIL PROTECTED] Subject: TACACS - Radius password authentication [7:47897] Hi all:-) Hmm.. Im wondering... What in gods name are TACACS and Radius passwords? I understand I can use them as password authentication, but?? Im sitting here up to my ears with Wave books and

TACACS - Radius password authentication [7:47897]

2002-07-01 Thread Morgan Hansen
Hi all:-) Hmm.. Im wondering... What in gods name are TACACS and Radius passwords? I understand I can use them as password authentication, but?? Im sitting here up to my ears with Wave books and the latest Odom 640-607 book and cant find anything on the subject?? Anyone? Best, Morgan

OT: Cisco Freeware TACACS instructional video [7:46359]

2002-06-12 Thread david smith
Hi Everyone, I've been using Cisco Freeware TACACS to manage Cisco over 500 routers/switches at my company which is a major financial institution in the East Coast. The TACACS server I am maintaining and developing is capable of supporting user authentication in both EXEC and Privilege mod

Tacacs on routers and switches [7:45538]

2002-05-31 Thread Kerry
Morning, I am trying to deny access to our Router on the network, but allow access on the switches only. I am Tacacs, is there a way of grouping switches different from routers and assigning defferent security setting to them Cheers Message Posted at: http://www.groupstudy.com/form

RE: Tacacs Question [7:45390]

2002-05-29 Thread Keyur Shah
Try global config command, ip tacacs source-interface -Keyur Shah- CCIE# 4799 (Security; Routing and Switching) CISSP,ccsa,css1,scsa,scna,mct,mcse,cni,mcne Hello Computers "Say Hello to Your Future!" http://www.hellocomputers.com Toll-Free: 1.877.794.3556 -Original Message

Re: Tacacs Question [7:45390]

2002-05-29 Thread Steve Boer
If I'm not mistaken, this would be a "ip tacacs source-interface fast3/0". My only $0.02 would be, wouldn't a loopback interface be more appropriate since A) It doesn't go down and B) would be a lot easier for either ACL'ing or firewalling since you'd have a

Tacacs Question [7:45390]

2002-05-29 Thread Richard Tufaro
When configuring Cisco ACS server with a router across the WAN connected by frame-relay, is there a way to tell the router to send the IP-originating interface as the ethernet controller? Much like when setting up syslog across a Frame WAN using: logging source-INTERFACE. Any ideas? Message Po

Re: PPP and tacacs [7:42818]

2002-04-29 Thread Shawn Heisey
Yes - use a config like this: ! aaa authentication ppp default none aaa authorization network default none aaa authentication ppp dialup group tacacs+ local aaa authorization network dialup group tacacs+ local aaa accounting network dialup start-stop group tacacs+ local ! interface group-async1

PPP and tacacs [7:42818]

2002-04-29 Thread NetEng
I have a 2600 series that has a 16 port async card for RAS dialup. It also has two WIC's for two T-1s that run ppp multilink. I want to enable tacacs for ppp dialup but not for the two T-1s. Is this possible? Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=4281

RE: TACACS+ [7:41103]

2002-04-10 Thread Pierre-Alex Guanel
I have read the documentation for ACS v2.6 I went to IOS commands (under group) in the IOS Commands sections I am getting error message whenever I enter something in the "command" and "argument" window. (for example: configure terminal gives me the error "exec terminal:incorrect format" Any id

TACACS+ [7:41095]

2002-04-10 Thread Pierre-Alex Guanel
I am using Cisco Secure ACS v2.6 I can't find the location in the software where I can set the commands users can use (Authorization). Can you give me a hint? thank you, Pierre-Alex Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=41095&t=41095 -

RE: TACACS+ [7:39297]

2002-03-28 Thread Kent Hundley
Yes, ACS supports TACACS+ or Radius on the front-end and many different user databases such as NT domain on the back-end. Yes, PIX is a TACACS+ client. Yes, the protocol is TACACS+ between PIX and ACS. You could call the PIX a NAS, but typically NAS refers to some sort of dial-in device, so

RE: TACACS+ [7:39297]

2002-03-28 Thread John Green
ote in message > [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > > IMO, the best way to study TACACS+ is to download > the free TACACS+ server > > from Cisco, install it on Linux and play around > with it. You'll learn > much > > more about how TACACS+ works

RE: password recovery 5000 with tacacs [7:39578]

2002-03-27 Thread Terry Hines
Kim, I appreciate the re as it turns out my fingers weren't fast enough. FYI when TACACS is enabled and the designated server is not available I found that I had to through the user name password authentication process quickly then type en followed by 2x key strokes got me past TACACS. Foll

Re: TACACS+ [7:39297]

2002-03-23 Thread Steven A. Ridder
Cool. thanks! -- RFC 1149 Compliant. Get in my head: http://sar.dynu.com ""Kent Hundley"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > The download still works fine for me from ftp-eng.cisco.com/pub/tacacs. > (anonymous login) > &

RE: TACACS+ [7:39297]

2002-03-23 Thread Kent Hundley
The download still works fine for me from ftp-eng.cisco.com/pub/tacacs. (anonymous login) ftp> get tac_plus.F4.0.4.alpha.tar.Z local: tac_plus.F4.0.4.alpha.tar.Z remote: tac_plus.F4.0.4.alpha.tar.Z 200 PORT command successful. 150 Opening BINARY mode data connection for tac_plus.F4.

RE: TACACS+ [7:39297]

2002-03-23 Thread Mike Sweeney
Come by my site.. I have a few different flavors of TACACS+ for downloading along with docs and white papers. I have a link to the TACACS stuff in the news columm. MikeS www.packetattack.com Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=39305&

RE: TACACS+ [7:39297]

2002-03-23 Thread Patrick Ramsey
Then take that same server and turn it into your dhcp/dns server and start the creep into the enterprise :) >>> "Kent Hundley" 03/23/02 12:53PM >>> IMO, the best way to study TACACS+ is to download the free TACACS+ server from Cisco, install it on Linux and

Re: TACACS+ [7:39297]

2002-03-23 Thread Steven A. Ridder
I think cisco stopped the DL of the free tacacs server a while ago. -- RFC 1149 Compliant. Get in my head: http://sar.dynu.com ""Kent Hundley"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > IMO, the best way to study TACACS+ is to download

RE: TACACS+ [7:39297]

2002-03-23 Thread Kent Hundley
IMO, the best way to study TACACS+ is to download the free TACACS+ server from Cisco, install it on Linux and play around with it. You'll learn much more about how TACACS+ works by implementing it and trying different things than any WP (it helps a lot if you have a router to work with as

Re: TACACS+ [7:39297]

2002-03-23 Thread Steven A. Ridder
Random characters to block url filter:apfho hfopiqwhj987489-123749 hd7634y 9y98yu*&^&^%*(%^*&^*(& 89yx9823749-8127c4 8977899^*%&^T&*(^&^%&^%*(&^*&(^*(&%^&^$C %^TYBVR%%R http://www.cisco.com/pcgi-bin/Support/PSP/psp_view.pl?p=Internetworking:Taca cs_plus -- RFC 1149 Compliant. Get in my head: ht

Re: TACACS+ [7:39297]

2002-03-23 Thread Steven A. Ridder
cs_plus -- RFC 1149 Compliant. Get in my head: http://sar.dynu.com wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > I have read the white paper on this. Does anyone know of a good study > source on this topic other than the white paper itself? > > Thanks Message Posted at:

TACACS+ [7:39297]

2002-03-23 Thread [EMAIL PROTECTED]
I have read the white paper on this. Does anyone know of a good study source on this topic other than the white paper itself? Thanks Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=39297&t=39297 -- FAQ, list archives, and subsc

Re: tacacs+ ports [7:38814]

2002-03-19 Thread bob smith
port 49 both TACACS & TACACS + ""NetEng"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Does anyone know what ports tacacs+ uses? I'm looking for what ports > Authentication uses, which ports Authorization uses, and what port >

tacacs+ ports [7:38814]

2002-03-19 Thread NetEng
Does anyone know what ports tacacs+ uses? I'm looking for what ports Authentication uses, which ports Authorization uses, and what port Accounting uses. If there are any additional ports it uses, I would appreciate that info as well. I can't seem to find much on tacacs+, does it us

RE: TACACS+ Server [7:38324]

2002-03-16 Thread Ray Smith
You know what if you get you kicks scolding people before helping them, then I rather you not help at all. Keep the Sarcasm to your self! >From: Sean Knox >To: 'Ray Smith' , [EMAIL PROTECTED] >Subject: RE: TACACS+ Server [7:38324] >Date: Fri, 15 Mar 2002 14:40:11

RE: TACACS+ Server [7:38324]

2002-03-15 Thread Sean Knox
For the uninitiated, QA = Quality Assurance and SQA is Software Quality Assurance. :) -Sean -Original Message- From: Sean Knox [mailto:[EMAIL PROTECTED]] Sent: Friday, March 15, 2002 2:39 PM To: [EMAIL PROTECTED] Subject: RE: TACACS+ Server [7:38324] Padding here, padding there

RE: TACACS+ Server [7:38324]

2002-03-15 Thread Sean Knox
Padding here, padding there, padding everywhere. www.cisco.com buddy. Ever used it? Sarcasm aside, this is a topic that you could have researched yourself with a 5 second search on Cisco or Google. I found these through google actually: TACACS+ Support Page (watch the wrap): http

Re: TACACS+ Server [7:38324]

2002-03-15 Thread Patrick Ramsey
a copmputer? I think most of the list has put together a machine or two. >>> "Ray Smith" 03/15/02 02:25PM >>> Solaris buddy. Do you know how to build one? >From: Brian >To: Ray Smith >CC: [EMAIL PROTECTED] >Subject: Re: TACACS+ Server [7:38324] >

Re: TACACS+ Server [7:38324]

2002-03-15 Thread Ray Smith
Solaris buddy. Do you know how to build one? >From: Brian >To: Ray Smith >CC: [EMAIL PROTECTED] >Subject: Re: TACACS+ Server [7:38324] >Date: Thu, 14 Mar 2002 16:52:17 -0800 (PST) > >I suspect that depends slightly on the od u want to use? >BSD, Linux, and Solaris wil

Re: TACACS+ Server [7:38324]

2002-03-14 Thread Patrick Bass
? > > Bri > > On Thu, 14 Mar 2002, Ray Smith wrote: > > > Does anyone know how to build/setup a TACACS+ Server on a Sparc-5? > > > > Ray > > > > > > _ > > Chat with friends onli

Re: TACACS+ Server [7:38324]

2002-03-14 Thread Brian
I suspect that depends slightly on the od u want to use? BSD, Linux, and Solaris will all run on that, which r u planning to use? Bri On Thu, 14 Mar 2002, Ray Smith wrote: > Does anyone know how to build/setup a TACACS+ Server on a Sparc-5? >

TACACS+ Server [7:38324]

2002-03-14 Thread Ray Smith
Does anyone know how to build/setup a TACACS+ Server on a Sparc-5? Ray _ Chat with friends online, try MSN Messenger: http://messenger.msn.com Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=38324&

RE: Tacacs Problem: Router Lockout [7:35223]

2002-02-12 Thread Andy Hoang
reload and bypass startup-config Copy start run and remove your AAA configs Change your config-reg back to 0x2102 wr m -Original Message- From: [EMAIL PROTECTED] [mailto:[EMAIL PROTECTED]]On Behalf Of Farooq Ali Sent: Tuesday, February 12, 2002 12:10 PM To: [EMAIL PROTECTED] Subject: Taca

RE: Tacacs Problem: Router Lockout [7:35223]

2002-02-12 Thread Michael Williams
ppens when configuring TACACS is you need to add "enable" or "none" at the end of the AAA line so that if you lose connectivity to the TACACS server you can still get in via telnet. Here is what I *used* to have in the config: aaa authentication login default tacacs+ But when the

RE: Tacacs Problem: Router Lockout [7:35223]

2002-02-12 Thread Scott Nawalaniec
rk try this one cisco.com/warp/public/701/61.html#how-to HTH Scott -Original Message- From: Scott Nawalaniec [mailto:[EMAIL PROTECTED]] Sent: Tuesday, February 12, 2002 1:03 PM To: [EMAIL PROTECTED] Subject: RE: Tacacs Problem: Router Lockout [7:35223] Webpage for common terminal pro

Re: Tacacs Problem: Router Lockout [7:35223]

2002-02-12 Thread Tshon
Hi All: > >I would appreciate if some one can help me in the right direction: >scenario: > >Trying to install Tacacs on a Win2k server, copied the config for the NAS >from the install window of TACACS. It has the command to TACACS all >lines, vtys,con,aux,telnet. Then the TACACS inst

Re: Tacacs Problem: Router Lockout [7:35223]

2002-02-12 Thread Steven A. Ridder
]] > Sent: Tuesday, February 12, 2002 12:21 PM > To: [EMAIL PROTECTED] > Subject: RE: Tacacs Problem: Router Lockout [7:35223] > > > Try several different break sequences such as CNTL-F6-BREAK. I think there > is a website out there somewhere that lists different possible break

RE: Tacacs Problem: Router Lockout [7:35223]

2002-02-12 Thread Scott Nawalaniec
Webpage for common terminal programs and break sequence numbers Scott -Original Message- From: s vermill [mailto:[EMAIL PROTECTED]] Sent: Tuesday, February 12, 2002 12:21 PM To: [EMAIL PROTECTED] Subject: RE: Tacacs Problem: Router Lockout [7:35223] Try several different break

RE: Tacacs Problem: Router Lockout [7:35223]

2002-02-12 Thread s vermill
Try several different break sequences such as CNTL-F6-BREAK. I think there is a website out there somewhere that lists different possible break sequences for various platforms. I think CNTL-F6-BREAK works with Hyperterminal as bundled with W2K. Message Posted at: http://www.groupstudy.com/form

Re: Tacacs Problem: Router Lockout [7:35223]

2002-02-12 Thread Timo Graser
You can't sent a break with Hyperteminal(Windows) download the terminalpprgram from Cisco for Example, you will be able to sent a break then Farooq Ali schrieb: Hi All: I would appreciate if some one can help me in the right direction: scenario: Trying to install Tacacs on a

Tacacs Problem: Router Lockout [7:35223]

2002-02-12 Thread Farooq Ali
Hi All: I would appreciate if some one can help me in the right direction: scenario: Trying to install Tacacs on a Win2k server, copied the config for the NAS from the install window of TACACS. It has the command to TACACS all lines, vtys,con,aux,telnet. Then the TACACS install is not complete

Tacacs [7:35215]

2002-02-12 Thread Farooq Ali
-- ___ Win a ski trip! http://www.nowcode.com/register.asp?affiliate=1net2phone3a Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=35215&t=35215 -- FAQ, list archives, and subscription

RE: TACACS+ Auth redundancy? [7:35043]

2002-02-11 Thread Georg Pauwen
Hi, You can use multiple 'radius-server host' or 'tacacs-server host' commands to specify multiple hosts. The software searches for hosts in the order you specify them. Example: radius-server host RADIUS1 radius-server host RADIUS2 If RADIUS1 is down, RADIUS2 will be con

RE: TACACS+ Auth redundancy? [7:35043]

2002-02-10 Thread Michael Williams
Sure. AFAIK, you can simply specify more than one TACACS server in your config and it should attempt to contact each server in the order you enter them. Mike W. Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=35064&

TACACS+ Auth redundancy? [7:35043]

2002-02-10 Thread somera cecilia
folks, does TACACS+ supports authentication backup? say client tries to authenticate in NAS-1 but NAS-1 is down, it then goes to a backup NAS-2? is this possible? I can't find any info from CCO. also does Radius support the same backup scheme? thnx Message Posted at: http://www.groupstud

Re: Terminal server tacacs+ question [7:34607]

2002-02-06 Thread Simon
Hannes, In your config you have the line: aaa authentication login default tacacs+ enable What this means is "for users logging into this device (or devices supported via this device - ie. your terminals) use the following methods (default): tacacs+ if it is configured correctly, the r

RE: Terminal server tacacs+ question [7:34607]

2002-02-06 Thread Woods, Randall, SOBUS
Hannes, you would configure it like this Router(config)#aaa authentication local-override In this case, the router will first check to see if there is a local user specified before checking the tacacs server. If one doesn't exist locally then it would check the tacacs server. Hope

Terminal server tacacs+ question [7:34607]

2002-02-06 Thread Kumari, Hannes
Hi All, Im tring to configure 2509 (with 8 async ports) as a terminal server so that I could access my network devices via console port. I have my default tacacs policy in place but in addition to that I would like to have sepparate policy for third parties ( IT depatment needs

Re: Radius vs. TACACS+ [7:33650]

2002-01-30 Thread lijingyu \(Jingyu,Li\)
Hi Kevin Pan, Why not visit www.gazi.edu.tr/tacacs . it's a wonderful site.I've used the tacacs+ RPM with the cisco 2509/2621/3640 providing remote dialing servie.It has worked for a long time since I set up the AAA server in 2000. It does a good job.And you can use CiscoSecure

Re: Radius vs. TACACS+ [7:33650]

2002-01-29 Thread Kevin Pan
Do you know where can I find those "free" TACACS software? Rgds, Kevin ""Ian Henderson"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > On Wed, 30 Jan 2002, Rodney Jackson wrote: > > > I want to setup a Radius server or a TACA

Re: Radius vs. TACACS+ [7:33650]

2002-01-29 Thread Ian Henderson
On Wed, 30 Jan 2002, Rodney Jackson wrote: > I want to setup a Radius server or a TACACS+, which do you guys think is > better and why? Depends on what you want it for. If its to give customers access to dial ins, RADIUS is by far more flexible. If you're looking for a commerci

Radius vs. TACACS+ [7:33650]

2002-01-29 Thread Rodney Jackson
I want to setup a Radius server or a TACACS+, which do you guys think is better and why? Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=33650&t=33650 -- FAQ, list archives, and subscription info: http://www.groupstudy.

Radius vs. TACACS+ [7:33647]

2002-01-29 Thread Rodney Jackson
I want to setup a Radius server or a TACACS+, which do you guys think is better and why? Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=33647&t=33647 -- FAQ, list archives, and subscription info: http://www.groupstudy.

RE: Tacacs+ software [7:32699]

2002-01-21 Thread Mike Sweeney
I have a few different ones available for downloading along with some docs and white papers www.packetattack.com/downloads.html MikeS Message Posted at: http://www.groupstudy.com/form/read.php?f=7&i=32730&t=32699 -- FAQ, list archives, and subscr

Re: PIX user Authentication PIX/TACACS [7:32684]

2002-01-21 Thread David Tran
That's is NOT true. Upgrade your PIX code to version 6.1(1) and the passwd prompt will go away. I am not sure about version 6.0(1). I've been using it on model 515, 525 and 535 without problem with TACACS. Another thing, I usually take TAC advice and recommendation with a grain of sa

Re: Tacacs+ software [7:32700]

2002-01-21 Thread Richard Tufaro
Found one. This one was submitted, but I couldn't get to it. Before. http://www.gazi.edu.tr/tacacs/index.php >>> Richard Tufaro 01/21 11:25 AM >>> Where would one, go about getting the freeware UNIX version of Tacacs+? Cisco http://www.cisco.com/warp/public/480/tacplu

Tacacs+ software [7:32699]

2002-01-21 Thread Richard Tufaro
Where would one, go about getting the freeware UNIX version of Tacacs+? Cisco http://www.cisco.com/warp/public/480/tacplus.shtml, points me to a place where i can't connect to it. Anyone have any independent sites that they know of, that are severing it up? Message Posted at:

RE: PIX user Authentication PIX/TACACS [7:32684]

2002-01-21 Thread Sandy Davidson
qo [mailto:[EMAIL PROTECTED]] > Sent: Monday, January 21, 2002 1:47 PM > To: [EMAIL PROTECTED] > Subject: PIX user Authentication PIX/TACACS [7:32684] > > > Hi, > I'm configuring a PIX firewall to authenticate telnet from our > engineering staff users (each one of us

PIX user Authentication PIX/TACACS [7:32684]

2002-01-21 Thread Marcos Casado CastaƱo
Hi, I'm configuring a PIX firewall to authenticate telnet from our engineering staff users (each one of us have a TACACS+ username and password). Everyhing works fine, except that the PIX prompts for the local password (passwd ) before consulting TACACS. Does anyone know if

Re: OT : Tacacs+ / Linux [7:32661]

2002-01-21 Thread Alex Lee
plus status" > to > see it is running. > > [root@bart /root]# /etc/init.d/tac_plus status > tac_plus (pid 741) is running... > [root@bart /root]# ps -e | grep tac_plus > 741 ? 00:00:00 tac_plus > [root@bart /root]# > > To "stop", "start&q

Re: OT : Tacacs+ / Linux [7:32661]

2002-01-21 Thread Alex Lee
Thanks for the info. Alex Lee ""Stefan Dozier"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > Here's a couple of links I used to get Tacacs+ up and running > on a Redhat v7.2 box. > > http://stiwww.epfl.ch/tacacs/u_g_F404.html

RE: OT : Tacacs+ / Linux [7:32661]

2002-01-20 Thread Stefan Dozier
Here's a couple of links I used to get Tacacs+ up and running on a Redhat v7.2 box. http://stiwww.epfl.ch/tacacs/u_g_F404.html Link on CCO http://www.cisco.com/warp/public/480/tacplus.shtml Also be advised that since it appears you installed using the .rpm file, it probably installed a

Re: OT : Tacacs+ / Linux [7:32661]

2002-01-20 Thread Brian Dennis
# To "stop", "start", or "restart" TACACS+ just su to root and type "/etc/init.d/tac_plus ". The config file for tac_plus is /etc/tacacs/tac_plus.cfg. If you need any help with the TACACS+ config file just let me know. Also make sure that you have an al

OT : Tacacs+ / Linux [7:32661]

2002-01-20 Thread Alex Lee
A newbie question regarding Tacacs+ on Linux box for home lab. I download the Tacacs+ v.9 from http://www.gazi.ed.tr/tacacs. Installed it successfully (I believe) as per instruction from the site, since I got a output of : tac_plus-F4.0.3.alpha-9 when I issue a query : rpm -q

RE: TACACS+ [7:30963]

2002-01-07 Thread Dimitris Vassilopoulos
Hello Edward, In case you use Cisco equipment, there is the line configuration command "absolute-timeout" . 3640_DialUp#conf t Enter configuration commands, one per line. End with CNTL/Z. 3640_DialUp(config)#line 97 126 3640_DialUp(config-line)#absolute-timeout ? Absolute timeout interval i

TACACS+ [7:30963]

2002-01-04 Thread Edward Chuchaisri
Another question to all you genius folks, I am looking for a TACACS+ software for either Windows or Linux that allows certain users to login in specific times and "log them out" when the time expires. If that's not possible, is there anyway that you can log the user out automati

Re: tacacs+ and pix [7:27141]

2001-11-22 Thread Patrick W. Bass
there is only privileged and unprivileged mode. no levels. ""ipguru1"" wrote in message [EMAIL PROTECTED]">news:[EMAIL PROTECTED]... > I tried looking this up but all I find is how to setup tacacs+ on the > pix. I would like to have priv. levels on the pix?

  1   2   3   4   >