Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations strongm on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Problem w/ Radius server (MS IAS) on Server 2003

Status
Not open for further replies.

OmegaLS

IS-IT--Management
Apr 1, 2004
12
US
I am trying to create a Radius server so my Cisco 3005 Vpn concentrator can authenticate users thru, but Im having an issue authenticating the users. I followed the steps in this cisco article on building the Radius server and setting up the concentrator, but for some reason I think theres something I need to do thats not in there in regards to talking to the AD or something.


I am doing this on a 2003 server, if that makes a difference but the only things I have done are was are listed in the article. Do I have to have routing and remote access running for this for the connection? I have no idea where to start trouble shooting this.

Thanks
 
I'm having the exact problem. At first i thought there was a routing/firewall problem, but i used Ethereal to see where the traffic was going. If i go into the 3005, test authentication to the AAA server, I can see that the traffic is making it to the AAA server. Problem is...i'm receiving an ICMP Destination unreachable packet back from the AAA server.

Not that this was much help to you, but i don't think you are having a routing problem.

I do know that you have to grant Remote Access Permission in AD otherwise account won't be validated.

Will keep you posted.
 
I have since fixed the issue, my problem was that when I was testing it using the test option in the 3005, I did not know that the test option was only using the protocal PAP and the server was set to only accept MSCHAPv2. Make sure to check your event logs on your radius server to see what exactly is going on. And enable all the different protocals on the radius server in your initial testings to see if you are having the same issues.

 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top