Tacacs client configuration failed to authenticate users

Created: Sep 6, 2016 21:13:22Latest reply: Sep 7, 2016 18:15:31 1745 2 0 0

Hello i am trying to configure tacacs client to my switch model CE5850 to authenticate with Cisco Acs but i fail to authenticate users using aaa. Below are my configurations.

authentication-scheme l-h

hwtacacs enable
hwtacacs server template ht
hwtacacs server authentication 172.16.7.165
hwtacacs server authorization 172.16.7.165
hwtacacs server accounting 172.16.7.165
hwtacacs server shared-key cipher @%@%Ej7hHx]jV>G]tvEt>"W-O-np@%@%
  authentication-mode hwtacacs local
authorization-scheme hwtacacs
  authorization-mode hwtacacs
accounting-scheme hwtacacs
  accounting-mode hwtacacs
  authorization-scheme hwtacacs
  accounting-scheme hwtacacs
  hwtacacs server ht

domain huawei
  authentication-scheme l-h
  authorization-scheme hwtacacs
  accounting-scheme hwtacacs
  hwtacacs server ht



  • x
  • convention:

raniocha     Created Sep 7, 2016 18:15:31 Helpful(0) Helpful(0)

hwtacacs-server template ht

### defining tacacs server for aaa operation 

 hwtacacs-server authentication 10.220.0.9 
 hwtacacs-server authorization 10.220.0.9 vpn-instance VRF_MANAGEMENT
 hwtacacs-server accounting 10.220.0.9 vpn-instance VRF_MANAGEMENT
### defining  source of management traffic (loopback interface)

 hwtacacs-server source-ip 10.221.255.240

 hwtacacs-server shared-key cipher %@%@.z|k&ze{VB::p;XASA$Y[80N%@%@

 undo hwtacacs-server user-name domain-included


aaa 

 authentication-scheme default

  authentication-mode hwtacacs local 

 authorization-scheme default

  authorization-mode hwtacacs local

  authorization-cmd 15 hwtacacs local 

 accounting-scheme default

  accounting-mode hwtacacs 

  accounting realtime 6 

  accounting start-fail online 

 recording-scheme default

  recording-mode hwtacacs ht  

 cmd recording-scheme default

 domain default  

 domain default_admin 

  authorization-scheme default

  hwtacacs-server ht 

  • x
  • convention:

user_235153     Created Sep 7, 2016 09:05:10 Helpful(0) Helpful(0)

Tacacs client configuration failed to authenticate users

THANKS

  • x
  • convention:

Reply

Reply
You need to log in to reply to the post Login | Register

Notice: To protect the legitimate rights and interests of you, the community, and third parties, do not release content that may bring legal risks to all parties, including but are not limited to the following:
  • Politically sensitive content
  • Content concerning pornography, gambling, and drug abuse
  • Content that may disclose or infringe upon others ' commercial secrets, intellectual properties, including trade marks, copyrights, and patents, and personal privacy
Do not share your account and password with others. All operations performed using your account will be regarded as your own actions and all consequences arising therefrom will be borne by you. For details, see " Privacy."
If the attachment button is not available, update the Adobe Flash Player to the latest version!
Fast reply Scroll to top