Why does RADIUS authentication fail when the RADIUS server template and RADIUS server are properly configured

4

This problem has the following possible causes:

-The IP address of the router (a RADIUS client) is not configured on the RADIUS server, so the RADIUS server cannot send an authentication response packet to the router.
-Different shared keys are configured on the router and the RADIUS server.

Other related questions:
Why does authentication fail when the RADIUS server template is correct and the AAA authentication mode is RADIUS
The possible causes are as follows: 1. The client's IP address is not configured on the server, the IP address is configured incorrectly, and the RADIUS server does not respond to authentication packets. 2. The shared keys on the AR and RADIUS server are different. 3. The user configuration of the RADIUS server is incorrect.

Why the RADIUS server template cannot be modified
In the versions earlier than V200R005, the administrator cannot modify the RADIUS server templates of online users. When users go online using a RADIUS server template, the RADIUS server template cannot be modified. Before modifying the RADIUS server template, wait until all users on the RADIUS server go offline or run the cut access-user command in the AAA view to disconnect the users. In V200R005 and later versions, the administrator can modify the RADIUS server templates of online users. However, the modification may not take effect on the online users or force the users to go offline.

Does RADIUS authentication require reachable routes between terminals and the RADIUS server on S series switches
An access device exchanges packets with the RADIUS server to implement RADIUS authentication. Therefore, if there are reachable routes between the access device and the RADIUS server, reachable routes between terminals and the RADIUS server are not required.

If you have more questions, you can seek help from following ways:
To iKnow To Live Chat
Scroll to top