Tek-Tips is the largest IT community on the Internet today!

Members share and learn making Tek-Tips Forums the best source of peer-reviewed technical information on the Internet!

  • Congratulations SkipVought on being selected by the Tek-Tips community for having the most helpful posts in the forums last week. Way to Go!

Secure ID

Status
Not open for further replies.

MelchiorKD

IS-IT--Management
Sep 19, 2001
31
0
0
US
I have a Cisco 3640 configured for remote user dial-up. We are using an RSA Secure ID/ACE server as a RADIUS server for authentication. I have the router configured for this but it is not working. The log is as follows:

Jul 19 11:40:54.272: %ISDN-6-CONNECT: Interface Serial1/0:0 is now connected toA
Jul 19 15:41:16.385: AAA: parse name=tty71 idb type=10 tty=71
Jul 19 15:41:16.385: AAA: name=tty71 flags=0x11 type=4 shelf=0 slot=0 adapter=00
Jul 19 15:41:16.385: AAA: parse name=Serial1/0:0 idb type=12 tty=-1
Jul 19 15:41:16.385: AAA: name=Serial1/0:0 flags=0x55 type=1 shelf=0 slot=1 ada0
Jul 19 15:41:16.385: AAA/MEMORY: create_user (0x62094E08) user='' ruser='' port1
Jul 19 15:41:16.389: AAA/AUTHEN/START (4126797074): port='tty71' list='' actionN
Jul 19 15:41:16.389: AAA/AUTHEN/START (4126797074): non console login - defaulte
Jul 19 15:41:16.389: AAA/AUTHEN/START (4126797074): Method=LOCAL
Jul 19 15:41:16.389: AAA/AUTHEN (4126797074): status = GETUSER
Jul 19 15:41:46.393: AAA/AUTHEN/ABORT: (4126797074) because CTRL-C pressed.
Jul 19 15:41:48.393: AAA/MEMORY: free_user (0x62094E08) user='' ruser='' port='1
Jul 19 15:41:48.393: AAA: parse name=tty71 idb type=10 tty=71
Jul 19 15:41:48.393: AAA: name=tty71 flags=0x11 type=4 shelf=0 slot=0 adapter=00
Jul 19 15:41:48.393: AAA: parse name=Serial1/0:0 idb type=12 tty=-1
Jul 19 15:41:48.393: AAA: name=Serial1/0:0 flags=0x55 type=1 shelf=0 slot=1 ada0
Jul 19 15:41:48.393: AAA/MEMORY: create_user (0x62094E08) user='' ruser='' port1
Jul 19 15:41:48.393: AAA/AUTHEN/START (2787384996): port='tty71' list='' actionN
Jul 19 15:41:48.397: AAA/AUTHEN/START (2787384996): non console login - defaulte
Jul 19 15:41:48.397: AAA/AUTHEN/START (2787384996): Method=LOCAL
Jul 19 15:41:48.397: AAA/AUTHEN (2787384996): status = GETUSER
Jul 19 15:41:59.169: AAA/AUTHEN/CONT (2787384996): continue_login (user='(undef)
Jul 19 15:41:59.169: AAA/AUTHEN (2787384996): status = GETUSER
Jul 19 15:41:59.169: AAA/AUTHEN/CONT (2787384996): Method=LOCAL
Jul 19 15:41:59.169: AAA/AUTHEN (2787384996): status = GETPASS
Jul 19 15:42:07.757: AAA/AUTHEN/ABORT: (2787384996) because Autoselected.
Jul 19 15:42:07.757: AAA/MEMORY: free_user (0x62094E08) user='jsmith' ruser='1
Jul 19 15:42:07.765: Di1 IPCP: Install route to 172.16.51.65
Jul 19 15:42:09.757: As71 LCP: I CONFREQ [Closed] id 1 len 23
Jul 19 15:42:09.757: As71 LCP: ACCM 0x00000000 (0x020600000000)
Jul 19 15:42:09.757: As71 LCP: MagicNumber 0x4241399D (0x05064241399D)
Jul 19 15:42:09.757: As71 LCP: PFC (0x0702)
Jul 19 15:42:09.757: As71 LCP: ACFC (0x0802)
Jul 19 15:42:09.757: As71 LCP: Callback 6 (0x0D0306)
Jul 19 15:42:09.757: As71 LCP: Lower layer not up, Fast Starting
Jul 19 15:42:09.757: As71 PPP: Treating connection as a callin
Jul 19 15:42:09.757: As71 PPP: Phase is ESTABLISHING, Passive Open
Jul 19 15:42:09.757: As71 LCP: State is Listen
Jul 19 15:42:09.757: As71 LCP: O CONFREQ [Listen] id 1 len 24
Jul 19 15:42:09.761: As71 LCP: ACCM 0x000A0000 (0x0206000A0000)
Jul 19 15:42:09.761: As71 LCP: AuthProto PAP (0x0304C023)
Jul 19 15:42:09.761: As71 LCP: MagicNumber 0x11575CD4 (0x050611575CD4)
Jul 19 15:42:09.761: As71 LCP: PFC (0x0702)
Jul 19 15:42:09.761: As71 LCP: ACFC (0x0802)
Jul 19 15:42:09.761: As71 LCP: O CONFREJ [Listen] id 1 len 7
Jul 19 15:42:09.761: As71 LCP: Callback 6 (0x0D0306)
Jul 19 11:42:09.761: %LINK-3-UPDOWN: Interface Async71, changed state to up
Jul 19 15:42:09.969: As71 LCP: I CONFREQ [REQsent] id 2 len 20
Jul 19 15:42:09.969: As71 LCP: ACCM 0x00000000 (0x020600000000)
Jul 19 15:42:09.973: As71 LCP: MagicNumber 0x4241399D (0x05064241399D)
Jul 19 15:42:09.973: As71 LCP: PFC (0x0702)
Jul 19 15:42:09.973: As71 LCP: ACFC (0x0802)
Jul 19 15:42:09.973: As71 LCP: O CONFACK [REQsent] id 2 len 20
Jul 19 15:42:09.973: As71 LCP: ACCM 0x00000000 (0x020600000000)
Jul 19 15:42:09.973: As71 LCP: MagicNumber 0x4241399D (0x05064241399D)
Jul 19 15:42:09.973: As71 LCP: PFC (0x0702)
Jul 19 15:42:09.973: As71 LCP: ACFC (0x0802)
Jul 19 15:42:11.757: As71 LCP: TIMEout: State ACKsent
Jul 19 15:42:11.757: As71 LCP: O CONFREQ [ACKsent] id 2 len 24
Jul 19 15:42:11.757: As71 LCP: ACCM 0x000A0000 (0x0206000A0000)
Jul 19 15:42:11.757: As71 LCP: AuthProto PAP (0x0304C023)
Jul 19 15:42:11.757: As71 LCP: MagicNumber 0x11575CD4 (0x050611575CD4)
Jul 19 15:42:11.757: As71 LCP: PFC (0x0702)
Jul 19 15:42:11.757: As71 LCP: ACFC (0x0802)
Jul 19 15:42:11.881: As71 LCP: I CONFACK [ACKsent] id 2 len 24
Jul 19 15:42:11.881: As71 LCP: ACCM 0x000A0000 (0x0206000A0000)
Jul 19 15:42:11.881: As71 LCP: AuthProto PAP (0x0304C023)
Jul 19 15:42:11.881: As71 LCP: MagicNumber 0x11575CD4 (0x050611575CD4)
Jul 19 15:42:11.881: As71 LCP: PFC (0x0702)
Jul 19 15:42:11.881: As71 LCP: ACFC (0x0802)
Jul 19 15:42:11.881: As71 LCP: State is Open
Jul 19 15:42:11.885: As71 PPP: Phase is AUTHENTICATING, by this end
Jul 19 15:42:11.893: As71 LCP: I IDENTIFY [Open] id 3 len 18 magic 0x4241399D M0
Jul 19 15:42:11.909: As71 LCP: I IDENTIFY [Open] id 4 len 26 magic 0x4241399D M5
Jul 19 15:42:11.913: As71 PAP: I AUTH-REQ id 57 len 16 from "remote"
Jul 19 15:42:11.913: As71 PAP: Authenticating peer remote
Jul 19 15:42:11.913: AAA: parse name=Async71 idb type=10 tty=71
Jul 19 15:42:11.913: AAA: name=Async71 flags=0x11 type=4 shelf=0 slot=0 adapter0
Jul 19 15:42:11.913: AAA: parse name=Serial1/0:0 idb type=12 tty=-1
Jul 19 15:42:11.913: AAA: name=Serial1/0:0 flags=0x55 type=1 shelf=0 slot=1 ada0
Jul 19 15:42:11.913: AAA/MEMORY: create_user (0x6231F41C) user='remote' ruser=''1
Jul 19 15:42:11.913: AAA/AUTHEN/START (927318248): port='Async71' list='' actioP
Jul 19 15:42:11.913: AAA/AUTHEN/START (927318248): using "default" list
Jul 19 15:42:11.913: AAA/AUTHEN/START (927318248): Method=radius (radius)
Jul 19 15:42:11.913: RADIUS: ustruct sharecount=1
Jul 19 15:42:11.917: RADIUS: Initial Transmit Async71 id 11 172.16.4.10:1645, A5
Jul 19 15:42:11.917: Attribute 4 6 AC103301
Jul 19 15:42:11.917: Attribute 5 6 00000047
Jul 19 15:42:11.917: Attribute 61 6 00000000
Jul 19 15:42:11.917: Attribute 1 7 7269636F
Jul 19 15:42:11.917: Attribute 2 18 233DDA3E
Jul 19 15:42:11.917: Attribute 6 6 00000002
Jul 19 15:42:11.917: Attribute 7 6 00000001
Jul 19 15:42:14.785: As71 PAP: I AUTH-REQ id 58 len 16 from "remote"
Jul 19 15:42:14.785: As71 AUTH: Duplicate authentication request id=58 already s
Jul 19 15:42:16.917: RADIUS: Retransmit id 11
Jul 19 15:42:17.821: As71 PAP: I AUTH-REQ id 59 len 16 from "remote"
Jul 19 15:42:17.821: As71 AUTH: Duplicate authentication request id=59 already s
Jul 19 15:42:20.845: As71 PAP: I AUTH-REQ id 60 len 16 from "remote"
Jul 19 15:42:20.845: As71 AUTH: Duplicate authentication request id=60 already s
Jul 19 15:42:21.917: RADIUS: Retransmit id 11
Jul 19 15:42:24.013: As71 PAP: I AUTH-REQ id 61 len 16 from "remote"
Jul 19 15:42:24.013: As71 AUTH: Duplicate authentication request id=61 already s
Jul 19 15:42:26.917: RADIUS: Retransmit id 11
Jul 19 15:42:27.437: As71 PAP: I AUTH-REQ id 62 len 16 from "remote"
Jul 19 15:42:27.437: As71 AUTH: Duplicate authentication request id=62 already s
Jul 19 15:42:31.197: As71 PAP: I AUTH-REQ id 63 len 16 from "remote"
Jul 19 15:42:31.197: As71 AUTH: Duplicate authentication request id=63 already s
Jul 19 15:42:31.917: RADIUS: Marking server 172.16.4.10:1645,1646 dead
Jul 19 15:42:31.917: RADIUS: Trying next server (172.16.3.10:1645,1646) for id11
Jul 19 15:42:31.917: RADIUS: Retransmit id 11
Jul 19 15:42:34.921: As71 PAP: I AUTH-REQ id 64 len 16 from "remote"
Jul 19 15:42:34.921: As71 AUTH: Duplicate authentication request id=64 already s
Jul 19 15:42:36.917: RADIUS: Retransmit id 11
Jul 19 15:42:36.985: RADIUS: Received from id 11 172.16.4.10:1645, Access-Rejec7
Jul 19 15:42:36.985: Attribute 18 17 41636365
Jul 19 15:42:36.985: RADIUS: Response for non-existent request ident
Jul 19 15:42:38.241: As71 PAP: I AUTH-REQ id 65 len 16 from "remote"
Jul 19 15:42:38.241: As71 AUTH: Duplicate authentication request id=65 already s
Jul 19 15:42:41.917: RADIUS: Retransmit id 11
Jul 19 15:42:41.921: As71 PAP: I AUTH-REQ id 66 len 16 from "remote"
Jul 19 15:42:41.921: As71 AUTH: Duplicate authentication request id=66 already s
Jul 19 15:42:45.289: As71 LCP: I TERMREQ [Open] id 5 len 16 (0x4241399D003CCD74)
Jul 19 15:42:45.289: As71 LCP: O TERMACK [Open] id 5 len 4
Jul 19 15:42:45.289: As71 PPP: Phase is TERMINATING
Jul 19 11:42:45.389: %ISDN-6-DISCONNECT: Interface Serial1/0:0 disconnected frs
Jul 19 15:42:46.917: RADIUS: Retransmit id 11
Jul 19 15:42:47.289: As71 LCP: TIMEout: State TERMsent
Jul 19 15:42:47.289: As71 LCP: State is Closed
Jul 19 15:42:47.289: As71 PPP: Phase is DOWN
Jul 19 15:42:47.289: As71 PPP: Phase is ESTABLISHING, Passive Open
Jul 19 15:42:47.289: As71 LCP: State is Listen
Jul 19 11:42:48.485: %LINK-5-CHANGED: Interface Async71, changed state to reset
Jul 19 15:42:48.489: As71 LCP: State is Closed
Jul 19 15:42:48.489: As71 PPP: Phase is DOWN
Jul 19 15:42:51.481: Di1 IPCP: Remove route to 172.16.51.65
Jul 19 15:42:51.917: RADIUS: Marking server 172.16.3.10:1645,1646 dead
Jul 19 15:42:51.917: RADIUS: Tried all servers.
Jul 19 15:42:51.917: RADIUS: No valid server found. Trying any viable server
Jul 19 15:42:51.917: RADIUS: Tried all servers.
Jul 19 15:42:51.917: RADIUS: No response for id 11
Jul 19 15:42:51.917: RADIUS: No response from server
Jul 19 15:42:51.917: AAA/AUTHEN (927318248): status = ERROR
Jul 19 15:42:51.917: AAA/AUTHEN/START (927318248): no methods left to try
Jul 19 15:42:51.917: AAA/AUTHEN (927318248): status = ERROR
Jul 19 15:42:51.917: AAA/AUTHEN/START (927318248): failed to authenticate
Jul 19 15:42:51.917: As71 PPP/AUTHEN 2: interface transition
Jul 19 15:42:51.917: As71 PAP: O AUTH-NAK id 66 len 32 msg is "Password validat"
Jul 19 15:42:51.917: AAA/MEMORY: free_user (0x6231F41C) user='remote' ruser='' p1
Jul 19 11:42:53.482: %LINK-3-UPDOWN: Interface Async71, changed state to down
Jul 19 15:42:53.482: As71 LCP: State is Closed
Jul 19 15:42:53.490: As71 AAA/AUTHOR/PER-USER: Event LCP_DOWN
Jul 19 15:42:53.490: As71 AAA/AUTHOR: LCP_DOWN


Can't figure out why the RADIUS server isn't authenticationg.
 
Status
Not open for further replies.

Part and Inventory Search

Sponsor

Back
Top