LinuxQuestions.org
Help answer threads with 0 replies.
Home Forums Tutorials Articles Register
Go Back   LinuxQuestions.org > Forums > Linux Forums > Linux - Server
User Name
Password
Linux - Server This forum is for the discussion of Linux Software used in a server related context.

Notices


Reply
  Search this Thread
Old 04-18-2013, 12:54 AM   #1
tonmoy
LQ Newbie
 
Registered: Apr 2013
Location: Dhaka, Bangladesh
Distribution: CentOS, Red Hat
Posts: 28

Rep: Reputation: 2
Exclamation Problem for users under Tacacs+ server on redhat


For research/study purpose I have deployed Tacacs+ server on redhat 6 and connected CISCO 7200 Routers with it using GNS3 emulator. Primary everything is working fine. I can add user in Tacacs+ config file, can define user priv-lvl, can restrict users on different commands specified on the config file. The problem I am facing is that (1) I can't assign user based enable password/secret on Tacacas+ Server and (2) the user authentication works for both telnet and console sessions but the authorization only works for telnet sessions where I need console users also to be authorized on commands. Besides, (3) I am looking for any web based Tacacs+ accounting system by which I can see the Tacacs+ real time logs in an interactive web interface. I have used a script and can view the logs in html file but this can't fulfill my requirements. Please help me to figure out my situation. Thanks in advance for trying for me.
 
Old 04-18-2013, 01:15 AM   #2
tonmoy
LQ Newbie
 
Registered: Apr 2013
Location: Dhaka, Bangladesh
Distribution: CentOS, Red Hat
Posts: 28

Original Poster
Rep: Reputation: 2
Quote:
R1#sh run | in aaa
aaa new-model
aaa authentication banner ^C^C
aaa authentication login default group tacacs+ local
aaa authentication enable default group tacacs+ enable
aaa authorization config-commands
aaa authorization exec default group tacacs+ if-authenticated
aaa authorization commands 1 default group tacacs+ if-authenticated
aaa authorization commands 15 default group tacacs+ if-authenticated
aaa authorization network default group tacacs+
aaa accounting exec default
aaa accounting commands 1 default
aaa accounting commands 15 default
aaa accounting network default
aaa accounting system default
aaa session-id common
### I can't use [line: 18] "enable = cleartext hello123" on Tacacs+ config file. Although many web tutorials show me to do that. Anyway, the error I get with "tac_plus -P -C /etc/tacacs/tac_plus.cfg" command is:

Quote:
enable Error: Unrecognized keyword enable for user on line 18
 
Old 09-09-2013, 04:28 AM   #3
tonmoy
LQ Newbie
 
Registered: Apr 2013
Location: Dhaka, Bangladesh
Distribution: CentOS, Red Hat
Posts: 28

Original Poster
Rep: Reputation: 2
Thanks everyone for trying to help me...
 
Old 09-09-2015, 01:26 AM   #4
kanika_gupta07
LQ Newbie
 
Registered: Aug 2013
Posts: 2

Rep: Reputation: Disabled
need help in installation of tacacs+ on redhat

Quote:
Originally Posted by tonmoy View Post
For research/study purpose I have deployed Tacacs+ server on redhat 6 and connected CISCO 7200 Routers with it using GNS3 emulator. Primary everything is working fine. I can add user in Tacacs+ config file, can define user priv-lvl, can restrict users on different commands specified on the config file. The problem I am facing is that (1) I can't assign user based enable password/secret on Tacacas+ Server and (2) the user authentication works for both telnet and console sessions but the authorization only works for telnet sessions where I need console users also to be authorized on commands. Besides, (3) I am looking for any web based Tacacs+ accounting system by which I can see the Tacacs+ real time logs in an interactive web interface. I have used a script and can view the logs in html file but this can't fulfill my requirements. Please help me to figure out my situation. Thanks in advance for trying for me.

Can you help me install tacacs+ on redhat6.3
 
  


Reply



Posting Rules
You may not post new threads
You may not post replies
You may not post attachments
You may not edit your posts

BB code is On
Smilies are On
[IMG] code is Off
HTML code is Off



Similar Threads
Thread Thread Starter Forum Replies Last Post
[SOLVED] TACACS+ Installation Problem oxid Linux - Software 5 08-27-2012 02:19 PM
tacacs+ problem qwerty1234 Linux - Server 2 08-02-2010 07:17 AM
TACACS server on CentOS 5 athreyavc Linux - Server 1 02-17-2010 11:32 PM
Problem in using PAM-TACACS+ with sshd Bandlaraj Linux - Software 0 08-20-2009 08:32 AM
want tacacs+ server with LDAP support ping2tariq Linux - Server 1 10-16-2006 02:17 AM

LinuxQuestions.org > Forums > Linux Forums > Linux - Server

All times are GMT -5. The time now is 12:09 AM.

Main Menu
Advertisement
My LQ
Write for LQ
LinuxQuestions.org is looking for people interested in writing Editorials, Articles, Reviews, and more. If you'd like to contribute content, let us know.
Main Menu
Syndicate
RSS1  Latest Threads
RSS1  LQ News
Twitter: @linuxquestions
Open Source Consulting | Domain Registration