Comware Based
1825598 Members
2383 Online
109682 Solutions
New Discussion

Tacacs issue on A5120 sw R2220P01/R2220P02

 
Per Andersson (perand)
Occasional Contributor

Tacacs issue on A5120 sw R2220P01/R2220P02

Hello.

 

This is driving me nuts - has anybody else encountered this :

I use the same configuration for tacacs as in a A5820, and that works fine.

In the A5120-EI, I can log in with tacacs credentials exactly one time after

reboot. Any later attempts only lets me use local defined user, but takes

a very long time to let me in.

I have so far tested this behaviour on two different switches.

 

hwtacacs scheme tacacscf
 primary authentication  x.y.z.127

 secondary authentication x.y.z..128
 primary authorization x.y.z.127
 secondary authorization x.y.z..128
 primary accounting x.y.z.127
 secondary accounting x.y.z..128
 key authentication cipher<secret>
 key authorization cipher <secret>
 key accounting cipher <secret>
 user-name-format without-domain

domain system
 authentication login hwtacacs-scheme tacacscf local
 authorization login hwtacacs-scheme tacacscf local
 accounting login hwtacacs-scheme tacacscf local
 access-limit disable
 state active
 idle-cut disable
 self-service-url disable
user-interface vty 0 15
 authentication-mode scheme