2611XM Terminal Server + ACS + new authentication when selecting menu options

Hello

I managed to configure ACS authentication on my 2611xm router,

After you connect to the router, I have an autocommand configuration to run a menu.

My problem is when you select the option in the menu,

You are then re invited to reauthenicated against the router before connecting to the line,

can someone tell me how to prevent it.

Thank you for your time and effort in advance, I have attached a config below.

DDRAS01 #sh running-config

Building configuration...

Current configuration: 6854 bytes

!

! Last modification of the configuration at 10:28:49 GMT Sunday, February 21, 2010 by

!  NVRAM config update at 19:25:53 GMT Saturday, February 20, 2010 by

!

version 12.4

horodateurs service debug datetime msec

Log service timestamps datetime msec

encryption password service

Service linenumber

sequence numbers service

!

hostname DDRAS01

!

boot-start-marker

boot-end-marker

!

Security of authentication failure rate 3 log

Passwords security min-length 6

logging buffered 51200 informational

record of the rate-limit all 10000

recording console critical

enable password 7

!

AAA new-model

!

!

AAA authentication login default group Ganymede + local

AAA authentication login if_needed local

the AAA authentication enable default

AAA of authentication ppp default local

AAA authorization exec default group Ganymede + local authenticated by FIS

AAA accounting exec default start-stop Ganymede group.

orders accounting AAA 15 by default start-stop Ganymede group.

!

AAA - the id of the joint session

clock timezone WAS 10

summer time clock WAS recurring last Sun Oct 02:00 last Sun Mar 03:00

no location network-clock-participate 1

No network-clock-participate wic 0

IP cef

!

!

!

!

list of IP domains

list of IP domains

IP domain name

the IP 2033 172.16.1.1 host dd-cr-01F

ddsws01 host IP 172.16.1.1 2034

ddsws04 host IP 172.16.1.1 2035

ddce565 host IP 172.16.1.1 2040

IP-name server

IP-name server

!

!

!

password username d ' operators 15 7 privilege

!

!

property intellectual ssh source interface FastEthernet0/0

property intellectual ssh event logging

property intellectual ssh version 2

!

!

interface Loopback0

IP 172.16.1.1 255.255.255.255

!

interface FastEthernet0/0

IP 255.255.255.0

Speed 100

full-duplex

!

interface Serial0/0

no ip address

Shutdown

!

interface BRI0/0

no ip address

encapsulation hdlc

Shutdown

!

interface FastEthernet0/1

no ip address

Shutdown

automatic duplex

automatic speed

!

IP forward-Protocol ND

IP route 0.0.0.0 0.0.0.0

!

IP http server

no ip http secure server

Ganymede IP source interface FastEthernet0/0

!

radius of the IP source interface FastEthernet0/0

exploitation forest installation local6

logging

SNMP-server RO community

SNMP-server RW community

SNMP server location

contact Server SNMP d ' operators

!

title of menu ddras01 ^ C

Server Terminal Server for Cisco

Select number from the list below

Use "ctrl + shift + 6" then 'x' to switch to the menu

^ C

text of ddras01 to menu 1 connect to the DD-CR-01

order of menu 1 ddras01 resume JJ-cr-01 / dd-cr-01 2033 telnet connection

ddras01 text menu 2 connect to DDSWS01

order of menu 2 ddras01 resume ddsws01 / ddsws01 2034 telnet connection

text menu 3 ddras01 connect to DDSWS04

order of menu 3 ddras01 resume ddsws04 / ddsws04 2035 telnet connection

text menu 8 ddras01 connect to DDCE565

order of menu 8 ddras01 resume ddce565 / ddce565 2040 telnet connection

menu 9 ddras01 text output

menu ddras01 command menu-exit 9

ddras01 menu clear-screen

menu ddras01-status line

menu-ddras01 line mode

radius-server host 10.2.0.50

RADIUS-server application made

radius-server key 7

!

control plan

!

privilege exec 15 level write terminal

writing level 15 privileges exec

Ping privileges exec level 1

privilege exec 10 undebug ip icmp level

privilege exec 10 undebug ip level

level of privilege exec 10 undebug all

privilege exec 10 undebug level

terminal monitor exec level 10 privileges

privilege exec 10 level terminals

privilege exec 15 level show running-config

See configuration at the privileged exec level 5

show privileges exec level 5

privilege exec 10 debug ip icmp level

privilege exec level 10 debug ip

privilege exec 10 level debug all

debugging privileges exec level 10

clear interface of privileges exec level 10

clear counters at level 10 privilege exec

level of privilege exec 10 clear

!

Line con 0

password 7

Synchronous recording

line 33 64

No exec-banner

exec-timeout 0 0

no activation-character

No exec

preferred transport telnet

transport of entry all

character of exhaust-27

StopBits 1

FlowControl hardware

line to 0

line vty 0 4

password 7

Synchronous recording

ddras01 menu autocommand

line vty 5 181

password 7

Synchronous recording

ddras01 menu autocommand

!

NTP-period clock 17208487

source NTP FastEthernet0/0

NTP server

end

Hello

You have aaa login default configured for authentication, with this you get invited

When you try to access the line.

Under line VTY 5 181 try adding:

authentication of the connection /NOAUTH

exec authorization /NOAUTH

Add the lines of aaa:

/NOAUTH AAA authentication login no

/NOAUTH AAA authorization exec no

This should stop the authentication to the lines.

-Jesse

Tags: Cisco Security

Similar Questions

  • We have a new RDS terminal server

    We have a new RDS Server terminal server running Windows Server 2008 R2 that we installed several of our applications on.  We have ten settings users (WinXP SP3) to connect to the terminal server through RDS to test applications with. The first time they have logged on the server RDS also connects to the domain when they start the first application on RDS, but only the first time. We have two users on the ten once they launched the first application after connection to RDS and the first journal in the field, they can disconnect from RDS and back in without having to log into the field to launch an application until they do one of the following values.  Go to a Web site in Internet Explorer, once they have come to any Web site unless the site of RDS, they must log on to the new area to launch an application or if they stop or restart their computer, they must log on to the new area to launch an application.   I tried to uninstall IE 8 and the same is true for IE 6. Not go to IE 9 again. I have re-installed IE 8 and applied all the updates window and the same results... None of the other users must connect to the domain again to launch an application after the first time. Any ideas on that?
     
    Thanks Al
    Thanks for visiting the site of the community of Microsoft Windows. The question you have posted is related to Windows Server 2008 and would be better suited to the TechNet community. Please visit the link below to find a community that will provide the support you want.
    http://social.technet.Microsoft.com/forums/en-us/category/WindowsServer
  • Excluding the lines of Terminal Server in the AAA authentication

    Hi all

    Hope you can help, I'm trying to find a solution to exclude only the following line port by using the AAA authentication (ACS GANYMEDE +) on a map of Terminal Server on a Cisco 2600 router.  Does anyone know how to do this, or point me in the right direction to solve?

    I've included the output below:

    AAA authentication login default group Ganymede + local
    AAA authorization exec default group Ganymede + local
    AAA accounting exec default start-stop Ganymede group.
    AAA accounting network default start-stop Ganymede group.
    AAA accounting default connection group power Ganymede
    AAA accounting system default start-stop Ganymede group.
    AAA - the id of the joint session

    line 41
    session-timeout 20
    decoder location - XXXXXX XXXXXX BT
    No banner motd
    No exec-banner
    absolute-timeout 240
    Modem InOut
    No exec
    transport of entry all
    StopBits 1
    Speed 38400

    Is it a question of disabling the command line or using a defined group?

    Thanks a lot for your help.

    Jim.

    Hi Jim

    You may need to create another group for authentication to the and send your AAA configuration

    line to 0

    connection of authentication aux_auth

    AAA authentication login aux_auth line

    You can also configure a username local/pw and map it on the group to here...

    Console and telnet would still use the configured default group, or you can specify specific groups:

    Line con 0

    console login authentication

    line 4 vty0

    vty authentication login

    and specify the aaa authentication settings individually...

    I hope this helps... all the best

    REDA

  • How to remove add it on to google search when the new tab is selected.

    The location of the default cursor is in the search box that is displayed when a new tab is selected. It's a firefox add-on. I would remove that add on. So that the cursor will move to the browser when a new tab is selected.

    Hi cor - el

    Who did the trick. Now, I own empty screens when I open my home page or open a new tab. I like the simplicity - I don't want to see ads or irrelevant guff loads when I use internet. I like a clear workspace, it makes me more relaxed and more productive. I am now very happy!

    Thanks a lot for your help to solve my problems.

    And thanks to Monez01 to start the discussion.

    All the best wishes, FriedEgg (keeping my Sunny Side Up!)

  • Modules window does not appear when selected in Tools/Addons except new open first tab

    Addons window does not open when selected Tools/Addons, except new (empty) tab was selected first. Is there a fix or is this a bug

    This has happened

    Each time Firefox opened

    == upgraded to 3.0

    It is a problem with one of your modules, Mr Tech Toolkit, it is a known problem, but I don't know any solution, although there are workarounds.

    In Mr Tech Toolkit options, under the section "Manager Hacks > Behaviour ', you will have to"select target window' set to 'new tab '. One solution is to change to 'new window '.

    An alternative is to use a bookmark to open Bookmark Manager modules in a tab at the following location:
    chrome://mozapps/content/extensions/extensions. XUL

  • Why remove the Terminal Server on Windows Server 2008 Standard Server HKEY_USERS\S -? When one connects users off?

    Why remove the Terminal Server on Windows Server 2008 Standard Server HKEY_USERS\S -? When one connects users off?

    I have a setting wrong?
    I can't find a setting that relates to this in either Terminal Server Config or Terminal Server Manager...
    Any help would be much appreciated.

    Hi Richard,

    Thanks for posting your question on Microsoft Community!

    I suggest you to ask your question in the section service Terminal Server TechNet forums for assistance.

    http://social.technet.Microsoft.com/forums/en-us/category/WindowsServer

    I hope this helps.

  • Windows Server 2003 (64-bit), Terminal Server has 2 mouse pointers when you connect via RDP

    I recently reinstalled one of our Terminal Server Windows Server 2003 (64-bit) servers.
    When you connect via RDP, I get 2 mouse pointers. One seems to be the pointer to the session that changes of hourglass, etc... and the pointer remains under the arrow.

    I have all the updates that are installed.
    There is no options on the RDP settings like what I use on other RDP to the other Terminal server sessions and is not on any other I RDP server on my client.

    I connected as other RDP clients and get with the same problem, is not a customer number
    Is there a setting on the server to disable this option?

    How can I remove the pointer that does not change in the session?

    These MS Answers forums are intended for the home rather than the it professional user. Please transfer your question in the relevant Microsoft Technet forum here:

    http://social.technet.microsoft.com/Forums/en-us/category/windowsserver .

    Thank you.      :)

    (I'm sorry, but I can't move this thread for you because the two forums are working on separate platforms)

  • When you try to connect from my vista desktop to my laptop windows 7 through the DRC I get the error "unable to connect to the gateway terminal server."

    problems of the DRC of vista for windows machine 7

    I have 2 computers running on a homegroup. When you try to connect from my vista desktop to my laptop windows 7 through the DRC, I get the error "unable to connect to the gateway terminal server."   Can I remotely from the laptop to the desktop vista end. I the DRC 7 is installed on the desktop and tried to connect using the IP as well as the name of the machine but still no joy.

    can someone shed light on this please?

    Hello

    Temporarily disable the security software on both computers and check if it makes a difference.

    http://Windows.Microsoft.com/en-us/Windows-Vista/disable-antivirus-software

    Note: Antivirus software can help protect your computer against viruses and other security threats.  In most cases, you should not disable your antivirus software. If you need to disable temporarily to install other software, you must reactivate as soon as you are finished. If you are connected to the Internet or a network, while your antivirus software is disabled, your computer is vulnerable to attacks.

  • Error code: 800ccc0d, the server is not found, when I try to connect to servers using Windows Live Mail 2011 news

    Original title: 800ccc0d ERROR FIX

    Hi people, I am getting an error ("the server is not found") when trying to connect to my news server. Œuvres mail (hotmail) ok, but I can't connect to one of my two news servers I use (teranews and broadstripe). I've included the error code I have in the title above. I use Windows Live Mail 2011.

    Anyone has any ideas for patches?

    Hi kb3jlc,

    If this problem occurs only with Windows Live mail, you can post the question in the Windows Live community:

    http://windowslivehelp.com/product.aspx?ProductID=15

    Hope this information is useful.

  • The mouse behaves strangely when RDPing in Terminal Server

    Hi all

    I have a few users with Mouse emits when they in their Server RDP terminal server. Some mouse clicks are part not at all and some simple clicks are part such as double-click, and some are normal. Double-tap speed is set at a rate that would not cause this. "Click items as follows" is defined as double click. Anyone have any ideas as to what it could be?

    Hello

    For assistance on this issue, you can ask your question in the below link:

    (Services Terminal Server) remote desktop services

    http://social.technet.Microsoft.com/forums/en-us/winserverTS/threads

  • When clicking on a tab to select this option, it sometimes makes a new group of tabs.

    When clicking on a tab to select this option, it sometimes makes a new group of tabs. Is there a way to stop this behavior?

    We try to cook something like Outlook, but not to meddle with the support of the tab too at the moment.
    As usual, you can ask on the feature request page :)

  • Firefox crashes when starting on Win2k3 Terminal Server

    Firefox 3.x works, however after upgrading to 10.0.2 it will crash whenever the commissioning.

    Platform: Windows 2003 Terminal Server with Citrix.

    We excluded the firefox.exe to the ctxhook and it does not help (we know this fixes the crash at startup on Xendesktop deployments).

    How to disable you DgApi.dll? Thank you.

  • Terminal Server services has not been installed when I installed windows xp

    I just installed Windows XP cannot afford to Win7. now hated Vista. He tells me that I can not install windows search services Terminal Server because the lack of services of her list so I can not enable or disable the service. How can I add this service. I have the XP Pro installation disc. I have installed all updates for XP to SP3. my email is * address email is removed from the privacy *.

    How to set up Outlook Express
    http://www.Microsoft.com/Windows/IE/IE6/using/howto/OE/Setup.mspx

    JS
    http://www.PAGESTART.com

    Never be afraid to ask. This forum has some of the best people in the world to help.

  • Errro: Cannot save the Terminal Server when he tried to use the program Sony Vegas

    Original title: cannot save the Terminal Server.

    I'm having a problem using my program "Sony Vegas". It worked OK. But now gives me an error. "Cannot save the Terminal Server. I don't know if this a problem of Windows, or Sony Vegas. Please tell us how to solve this problem. Thank you.

    Hi barnstable,.

    Try these steps and check the result.
    Step 1: Check if the Terminal Services service is disabled
    a. Click Start, click Run.
    b. type services.msc, and then click ok.
    c. in the list of services, double-click Terminal Server Services.
    d. change the startup type to automatic and start the service.
    e. click ok to apply the changes.
    f. check if the problem persists.

    Step 2: If the problem persists, uninstall and reinstall the program Sony Vegas
    see How to change or remove a program in Windows XP .
    b. Once you have deleted the program, restart the computer.
    c. reinstall the program.

    For additional support, get in touch with Sony support team.

    Visit our Microsoft answers feedback Forum and let us know what you think.

  • Problem with Photoshop crashes or freeze for users on a server terminal server

    Dear Forum!

    I'm having trouble with Photoshop gel over a period of 20 minutes when you (1) user gum with special brushes and (2) copy and paste the material to a PDF file in Photoshop. As you can see by the size of this post, I'm getting quite depserate here and need help.

    Some background information...

    Photoshop CS6 is installed on a server terminal server with approximately 25 active users where 3 of them are using Photoshop.

    The operating system on the server is Windows Server R2 2012.

    There are no extra modules just a simple installation of Photoshop in this case.

    The server uses 40-60% of the memory most of the time (for the most part, a little less, sometimes a little more, but never 100%) and 40% of the CPU.

    There is enough free space on the disk.

    The problem in detail...

    There are two occasions where the gel was held most of the time. After that it crashes for the first time, it will happen whenever you do any operations over a period of about 20 minutes and it is reciprocal for all users. When it freezes, freezes any terminal session but the program, I always answer (it is not in of "not responding") when you look at another user via the Task Manager. Ending the process as an administrator works sometimes, although the moment where I end it process it takes about 10 to 60 seconds before the program closes actually and the user gets back control. The best thing to do most of the time, if an administrator requires them to close the session.


    1. the first opportunity is when you use the eraser with a brush that is not a standard but added manually. The names of the brush packages used are:
    Extacy__Elemental

    KKC_Fractal

    Kornkid's_Grunge_Set

    and the problem is with all the brushes inside those packages. How I evoke the problem is the following:

    1. start Photoshop

    2. create new

    3. fill the background with any color

    4. Select the Eraser tool

    5. change the brush to one of those mentioned above

    6. program freezes

    2. the second scenario when the problem occurs is when users copy something from a PDF in Photoshop. The way I talk about it is:

    1. open a PDF file

    2. Select the box and copy it

    3. open Photoshop

    4 create new

    5 paste in Photoshop

    6. program freezes

    So far, we've tried solutions...

    I worked on it for several tour now and I'm not entirely sure on what exactly I did. I'll try and do the following once more, but I'm sure I've tried most of them.


    Update graphics card drivers.

    Reset all tools:

    1. Select a tool options

    2. choose «Reset all tools»

    Reset default settings:

    1. hold ctrl + shift + alt for Photoshop to start

    2. Select "Yes".

    Tested if it matter if I have a pen or not connected, which it doesn't.

    Removed Special brushes (but it's still freezing when copy/paste of the PDF)

    Deleted 'save in the background' and 'automatically save recovery information' options

    Update to the latest version.

    Off to OpenGL

    Solutions I have not, but I'll try...

    Reinstall Photoshop

    Change the font preview size

    1. go to "type".

    2. Select "prview font size."

    3. Select 'none '.

    Delete the cache of system fonts

    1. Close all Adobe applications, including the application of office (if installed) creative cloud.
    2. Go to \Windows\ServiceProfiles\LocalService\Appdata\Local
    3. Remove the * FNTCACHE. * DAT or * FontCache*.dat files.
      NOTE: the asterisk (*) indicates the different numbers, letters or words, such as FontCache-S-1-5 - 21.dat or COFFfntCache.dat.

    Delete the cache of Photoshop police

    1. Release of Photoshop and the creative cloud (if installed) desktop application.
    2. Navigate to the appropriate folder
    • Photoshop CS6 and earlier versions.
      Windows XP: \Documents and Settings\Local Settings\Application Adobe application
      [Windows 7: \Users\[user name] \AppData\Local\Adobe
    • Photoshop CC and CC 2014
      [Windows 7 and 8: \Users\[user name] \AppData\Roaming\Adobe\Adobe Photoshop CC or CC 2014

    3. delete the TypeSupport (Photoshop CS6 and earlier) or the folder of police CT (Photoshop CC and CC 2014) Cache and the empty the trash.


    Some links that I've been using...

    t http://blogs.Adobe.com/Crawlspace/2012/07/Photoshop-basic-troubleshooting-steps-to-fix-MOS - issues.html
    http://helpx.Adobe.com/Photoshop/KB/Photoshop-CS6-GPU-FAQ.html#troubleshoot
    http://helpx.Adobe.com/Photoshop/KB/troubleshoot-fonts-Photoshop-CS5.html

    To be updated for future visitors to this case, we discovered that the problem might be with a bug in Windows, so we downloaded the latest updates and are currently waiting for your comments. I'll update once more when some time has passed and we have confirmed whether the update has worked or not.

Maybe you are looking for