Re: Freeradius and Cisco (cisco-avpair = "shell:priv-lvl=15"doesn't work)

2008-07-11 Thread David Mitchell
Ivan Kalik wrote: > You need to have a look at switch radius documentation to see which > Service -Type are you suposed to return. Administrative-User? This is IOS, correct? You need to add 'aaa authorization exec default group radius none' to your config or else the switch will ignore your higher

Re: Freeradius and Cisco (cisco-avpair = "shell:priv-lvl=15"doesn't work)

2008-07-11 Thread Ivan Kalik
You need to have a look at switch radius documentation to see which Service -Type are you suposed to return. Administrative-User? Ivan Kalik Kalik Informatika ISP Dana 11/7/2008, "Simo" <[EMAIL PROTECTED]> piše: >On Fr, 2008-07-11 at 10:38 +0100, Ivan Kalik wrote: >> Cisco-NAS-Port = "tty2" > >

Re: Freeradius and Cisco (cisco-avpair = "shell:priv-lvl=15" doesn't work)

2008-07-11 Thread Simo
On Fr, 2008-07-11 at 10:38 +0100, Ivan Kalik wrote: > Cisco-NAS-Port = "tty2" Thnx for your reply. I have setting the NAS-Port to tty2 but i'm still having the same Problem. And here is the reply of switch (priv=1 was requested): 04:25:06: AAA: parse name=tty2 idb type=-1 tty=-1 04:25:06: AAA: n

Re: Freeradius and Cisco (cisco-avpair = "shell:priv-lvl=15" doesn't work)

2008-07-11 Thread Ivan Kalik
Something is not right here. Request is for: >Cisco-NAS-Port = "tty2" and there is no Service-Type attribute in the request. And then Cisco aaa debug is for a different port which should have a Service-Type in the request: >03:27:12: AAA/AUTHEN/START (2153705482): port='tty3' list='' >ac

Re: Freeradius and Cisco (cisco-avpair = "shell:priv-lvl=15" doesn't work)

2008-07-11 Thread Alan DeKok
Simo wrote: > i'm trying to do the authentication of cisco cat switches with the > freeradius. The Authentication works fine, also the authentication of > the enable lvl mode (e.g. $enab15$) and the accounting too (the > configuration is from the freeradius-wiki cisco artical). > But i'm still hav

Freeradius and Cisco (cisco-avpair = "shell:priv-lvl=15" doesn't work)

2008-07-11 Thread Simo
hello Mailing-List, i'm trying to do the authentication of cisco cat switches with the freeradius. The Authentication works fine, also the authentication of the enable lvl mode (e.g. $enab15$) and the accounting too (the configuration is from the freeradius-wiki cisco artical). But i'm still havi