Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations biv343 on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

radius using IAS but not passing priv level command

Status
Not open for further replies.

volleyman

MIS
Jun 12, 2002
183
US
All,

I am using Microsoft IAS to handle authentication to my Cisco devices. I have included the custom privlevel command so that I am in enable mode when I log in.

It is working for a couple hundred devices but one particular router isn't working. I can log in but I have to type in the "enable" command and I get prompted for a password. I enter a password that is local to the router and it lets me in. any idea why the command from IAS isn't working?

thanks in advance for your help.



Zane D.
Systems Admin
 
You need to enable AAA Authorization as well or else the switch will ignore the priv-lvl attirbute from the IAS server.
Code:
aaa authorization exec default group radius (or your aaa server group)

HTH

Andy
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top