From: clingamgunta@xxxxxxxxxxxxx
Date: Fri Jan 04 2002 - 11:10:19 GMT-3
Thanks Rivron for your time but,
aaa authentication login revtelnet none : In this case we will use a group/lis
t
called reversetelnet instead of default group (default group is applied to all
lines) With the second line as you suggested, we will be applying reversetelnet
group to the aux/serial line which means the incoming requests on this line wil
l
be authenticated by this list/tacacs configuration. In our requirement incoming
connection is through telnet and goes out through line/serial.
Chandra
Rivron Francois <Francois.Rivron@ei-rsi.fr> on 04/01/2002 13:43:52
To: Chandra Lingamgunta@Energis, ccielab@groupstudy.com
cc:
Subject: RE: Tacacs+ config problem with Reverse telnet
*******************************************************************************
*************************
This e-mail is from Energis plc, 50 Victoria Embankment, London, EC4Y 0DE, Unit
ed
Kingdom, No: 2630471.
This e-mail is confidential to the addressee and may be privileged. The views
expressed are personal and do not necessarily reflect those of Energis. If you
are not
the intended recipient please notify the sender immediately by calling our swit
chboard on
+44 (0) 20 7206 5555 and do not disclose to another person or use, copy or forw
ard
all or any of it in any form.
*******************************************************************************
*************************
Hello,
Have you tried this :
aaa authentication login revtelnet none
line aux 0 (or the serial interface where reverse telnet is used)
login authentication revtelnet
> -----Message d'origine-----
> De: clingamgunta@energis.co.uk [SMTP:clingamgunta@energis.co.uk]
> Date: vendredi 4 janvier 2002 10:43
> @: ccielab@groupstudy.com
> Objet: Tacacs+ config problem with Reverse telnet
>
> Hi,
> Our requirement is not to have Tacacs+ authentication for reverse telent (
> have
> terminal servers connected to Serial devices). However when we add the
> config
> "aaa new model", it is asking for user name and password for every telnet
> and
> reverse telnet. I thought that all telnets no matter what port number is
> will go
> through vty lines only and authentication rules will be applied to reverse
> telnet also as configured under vty lines., however with out tacacs+, even
> if
> there was a password under vty lines, it is not challenged while doing
> reverse
> telnet. Has any one come across such problem?
> Thanks
> Chandra #8052
>
>
>
>
> **************************************************************************
> ******************************
> This e-mail is from Energis plc, 50 Victoria Embankment, London, EC4Y 0DE,
> United
> Kingdom, No: 2630471.
>
> This e-mail is confidential to the addressee and may be privileged. The
> views
> expressed are personal and do not necessarily reflect those of Energis. If
> you are not
> the intended recipient please notify the sender immediately by calling our
> switchboard on
> +44 (0) 20 7206 5555 and do not disclose to another person or use, copy or
> forward
> all or any of it in any form.
>
> **************************************************************************
> ******************************
This archive was generated by hypermail 2.1.4 : Thu Jun 13 2002 - 10:56:15 GMT-3