From: Ben (bmunyao@gmail.com)
Date: Mon Jul 23 2007 - 07:48:25 ART
Sirus
I could be wrong, but I think you also need to add "aaa authen login default
group radius", to be authenticated for user EXEC access. The "aaa authen
enable ..." comes after, for privileged EXEC mode access.
HTH
Ben
On 7/23/07, sirus MOGHADASIAN <cyrus.mgh@gmail.com> wrote:
>
> Hi,
>
> I configure router with following commands
>
> aaa new-model
> aaa authentication enable default group radius none
> radius-server host 2.2.2.9 auth-port 1645 acct-port 1646 key cisco
>
> and also configure IAS ,join it to AD, create Radius client,Remote Access
> Policy (use unencripted and add windows group) everything seems to be OK,
> but when I try to login from user mode to privilege mode it gives me this
> error "% Error in authentication." ,besides this is log file of IAS
>
> "2.2.2.2,$enab15$,07/23/2007,02:51:31,IAS,SERVER2003,25,311 1
> 2.2.2.907/22/2007 21:52:38
> 18,4127,1,4130,MCSE\$enab15$,4129,MCSE\$enab15$,4154,Use Windows
> authentication for all users,4108,2.2.2.2
> ,4116,9,4128,R1,4155,1,4136,3,4142,48"
>
> Any idea why I cannot login use my windows password???????
>
>
> Sirus MGH
>
> _______________________________________________________________________
> Subscription information may be found at:
> http://www.groupstudy.com/list/CCIELab.html
This archive was generated by hypermail 2.1.4 : Sat Aug 18 2007 - 08:17:41 ART