Cisco AAA via Win2k3 IAS



Hi.

I am having trouble getting my IAS server to authenticate
users connecting to my Cisco Easy VPN Server.

I have set all the required parameters on the CISCO
device:

aaa authentication login default local
aaa authorization exec default local
aaa authorization network default local

radius-server host 192.168.1.1 auth-port 1645 acct-port
1646 key 7 blahblahblah

On the IAS server I have set the Cisco device up as a
RADIUS client with a pre-shared key and allowed no
encryption between the nodes. My access policy is a
simple one not that it matters, I don't get to that stage.

The Cisco device forwards the requests to the IAS server
but the IAS server does not respond.

If anyone has afew pointers for setting this up I'd
really appreciate you sharing them with me.

Thanks
.



Relevant Pages

  • IAS to authenticate CISCO VPN traffic
    ... I just closed a TAC with CISCO about this issue and they are pointing to the ... I have a cisco router configured with a group VPN key, and a IAS server ... CiscoRouter wuth the correct shared secret and I have set the Client Vendor ... Within this profile Under authentication and encryption I have tried ...
    (microsoft.public.internet.radius)
  • Re: Cisco AAA via Win2k3 IAS
    ... >I should have included the logs from the IAS server. ... > 1,4154,Use Windows authentication for all ... >>users connecting to my Cisco Easy VPN Server. ... >>The Cisco device forwards the requests to the IAS server ...
    (microsoft.public.internet.radius)
  • Cisco AAA via Win2k3 IAS
    ... Cisco routers were requesting authentication via PAP ... >I am having trouble getting my IAS server to ...
    (microsoft.public.internet.radius)
  • Re: IAS & Fully-Qualified-User-Name
    ... authentication attempts in the security log? ... Svyatoslav Pidgorny, MS MVP - Security, MCSE ... The IAS server is a domain controller too, ... >> resolution - capture traffic from IAS as the user tries to authenticate ...
    (microsoft.public.security)
  • Re: Cisco AAA via Win2k3 IAS
    ... In the log file you have "31,203.40.173.129". ... the cisco device is not in your IAS RADIUS clients ... >I should have included the logs from the IAS server. ...
    (microsoft.public.internet.radius)