Hi folks, I was at a client site today and had trouble getting RADIUS to work with the RSA ACE/SERVER. I have set the pre-shared key on both the server and the router, configured all the aaa new-model commands, 'debug aaa authentication' shows that it is using radius to authenticate, and 'debug radius' shows that it actually is hitting the radius server's ip address at the standard port 1645. However one of the debug output that shows is something like this: RADIUS: Received from id 21 171.68.118.101:1645, Access-Reject, len 20 RADIUS: Reply for 21 fails decrypt I know that this means that the keys do not match, but I've double and triple-checked and the keys DO match. So what else could be causing this? Iohan _________________________________ FAQ, list archives, and subscription info: http://www.groupstudy.com/list/cisco.html Report misconduct and Nondisclosure violations to [EMAIL PROTECTED]

