Discussion:
Cisco PIX515e and Server 2008
(too old to reply)
ambarr
2009-03-11 17:11:02 UTC
Permalink
I’m trying to get my CISCO PIX515e to authenticate against a Server 2008
radius server but the internal logon test of the PIX fails with an invalid
password error. The test passes when I run it against a Server 2003 radius
server. I’m not sure whether or not policies make a difference in 2008 but
they don’t in 2003 with respect to the CISCO radius server authentication
test. I can delete the policies from the 2003 radius server and the test will
pass, which makes me believe policies aren’t relevant to this particular
test. I sniffed the transactions on both servers with MS Network Monitor and
the traces from the logon requests submitted to the radius servers were
identical. Accept the 2003 server authentication request was accepted and the
2008 was rejected. Is there additional security in 2008 that would cause the
logon test to fail?

Thanks

Adrien
FenderAxe
2009-03-16 01:38:46 UTC
Permalink
I’m trying to get my CISCO PIX515e to authenticate against a Server
2008 radius server but the internal logon test of the PIX fails with
an invalid password error. The test passes when I run it against a
Server 2003 radius server. I’m not sure whether or not policies make
a difference in 2008 but they don’t in 2003 with respect to the
CISCO radius server authentication test. I can delete the policies
from the 2003 radius server and the test will pass, which makes me
believe policies aren’t relevant to this particular test. I sniffed
the transactions on both servers with MS Network Monitor and the
traces from the logon requests submitted to the radius servers were
identical. Accept the 2003 server authentication request was accepted
and the 2008 was rejected. Is there additional security in 2008 that
would cause the logon test to fail?
Thanks
Adrien
Did you configure the PIX as a RADIUS client in NPS? Did you use the same
password/shared secret as you did when you configured the PIX itself?

FA

Loading...