Xin chào ! Nếu đây là lần đầu tiên bạn đến với diễn đàn, xin vui lòng danh ra một phút bấm vào đây để đăng kí và tham gia thảo luận cùng VnPro.

Announcement

Collapse
No announcement yet.

Lỗi khi ssh vào router qua radius server

Collapse
X
 
  • Filter
  • Time
  • Show
Clear All
new posts

  • Lỗi khi ssh vào router qua radius server

    Hi all!
    Em đang test radius server ( Linux) thì bị gặp lỗi này ạ

    Radius Server(172.16.1.200) --(.100) Cisco2691 (10.0.0.1) --- (.2) PC

    Ping Ok. Cấu hình:
    +radius server(linux):
    host: localhost
    acc: u1 pass: 123456a@ key: testing123
    test account(success)

    +router:
    ip domain localhost
    crypto key ...: 1024
    ip ssh ver 2
    ip ssh authen 5
    ip ssh time 120
    user u1 pass 123456a@
    line vty 0 4
    login local
    transpot input ssh

    aaa new-model
    aaa authentication login default group radius
    aaa authorization exec default group radius
    radius-server host 192.168.174.200
    RadiusClient(config)#radius-server key testing123

    File log:
    *Mar 1 01:40:08.987: RADIUS/ENCODE(00000009): ask "Password: "
    *Mar 1 01:40:08.991: RADIUS/ENCODE(00000009): send packet; GET_PASSWORD
    *Mar 1 01:40:09.003: RADIUS/ENCODE(00000009):Orig. component type = EXEC
    *Mar 1 01:40:09.007: RADIUS: AAA Unsupported Attr: interface [158] 5
    *Mar 1 01:40:09.007: RADIUS: 74 74 79 [tty]
    *Mar 1 01:40:09.011: RADIUS/ENCODE(00000009): dropping service type, "radius-server attribute 6 on-for-login-auth" is off
    *Mar 1 01:40:09.015: RADIUS(00000009): Config NAS IP: 0.0.0.0
    *Mar 1 01:40:09.015: RADIUS/ENCODE(00000009): acct_session_id: 7
    *Mar 1 01:40:09.019: RADIUS(00000009): sending
    *Mar 1 01:40:09.027: RADIUS/ENCODE: Best Local IP-Address 192.168.174.100 for Radius-Server 192.168.174.200
    *Mar 1 01:40:09.035: RADIUS(00000009): Send Access-Request to 192.168.174.200:1645 id 1645/10, len 89
    *Mar 1 01:40:09.039: RADIUS: authenticator 02 08 81 DA A5 68 0C 33 - A8 6B 66 1D 27 7C C4 19
    *Mar 1 01:40:09.039: RADIUS: User-Name [1] 4 "u1"
    *Mar 1 01:40:09.043: RADIUS: Reply-Message [18] 12
    *Mar 1 01:40:09.047: RADIUS: 50 61 73 73 77 6F 72 64 3A 20 [Password: ]
    *Mar 1 01:40:09.047: RADIUS: User-Password [2] 18 *
    *Mar 1 01:40:09.051: RADIUS: NAS-Port [5] 6 66
    *Mar 1 01:40:09.051: RADIUS: NAS-Port-Id [87] 7 "tty66"
    *Mar 1 01:40:09.055: RADIUS: NAS-Port-Type [61] 6 Virtual [5]
    *Mar 1 01:40:09.059: RADIUS: Calling-Station-Id [31] 10 "10.0.0.2"
    *Mar 1 01:40:09.059: RADIUS: NAS-IP-Address [4] 6 192.168.174.100
    R1#
    R1#
    *Mar 1 01:40:14.619: RADIUS: no sg in radius-timers: ctx 0x66E4A094 sg 0x0000
    *Mar 1 01:40:14.623: RADIUS: Retransmit to (192.168.174.200:1645,1646) for id 1645/10
    R1#
    *Mar 1 01:40:20.195: RADIUS: no sg in radius-timers: ctx 0x66E4A094 sg 0x0000
    *Mar 1 01:40:20.199: RADIUS: Retransmit to (192.168.174.200:1645,1646) for id 1645/10
    R1#
    *Mar 1 01:40:25.779: RADIUS: no sg in radius-timers: ctx 0x66E4A094 sg 0x0000
    *Mar 1 01:40:25.783: RADIUS: Retransmit to (192.168.174.200:1645,1646) for id 1645/10
    R1#
    *Mar 1 01:40:30.951: RADIUS: no sg in radius-timers: ctx 0x66E4A094 sg 0x0000
    *Mar 1 01:40:30.955: %RADIUS-4-RADIUS_DEAD: RADIUS server 192.168.174.200:1645,1646 is not responding.
    *Mar 1 01:40:30.963: %RADIUS-4-RADIUS_ALIVE: RADIUS server 192.168.174.200:1645,1646 has returned.
    R1#
    *Mar 1 01:40:30.967: RADIUS: No response from (192.168.174.200:1645,1646) for id 1645/10
    *Mar 1 01:40:30.971: RADIUS/DECODE: No response from radius-server; parse response; FAIL
    *Mar 1 01:40:30.975: RADIUS/DECODE: Case error(no response/ bad packet/ op decode);parse response; FAIL

    Em cám ơn !
Working...
X