Fundamentals.  IOS defaults to port 1646 while the CAS defaults to 1813.  All 
fixed now.  Thanks.

-----Original Message-----
From: Cisco Clean Access Users and Administrators [mailto:[EMAIL PROTECTED] On 
Behalf Of Nathaniel Austin
Sent: Thursday, May 08, 2008 1:48 PM
To: [email protected]
Subject: Re: VPN single sign-on using IOS VPN

Hey Shane,

I see no reason why it won't work. Lets check if the CAS is accepting 
the radius packet. Browse to the CAS (https://<cas-ip>/admin) and goto 
support logs. Set the Radius accounting logging to ALL. Then SSH to the 
CAS and run "tail -f /perfigo/logs/perfigo-redirect-log0.log.0" try to 
login and force an acct packet to be sent. What do you see in the logs?

Thanks,

Nate

Miles, Shane wrote:
>
> I use RADIUS single sign-on with wireless controllers with no problem 
> but now I’m trying to get it to work using IOS as a remote access VPN 
> termination point.  The docs talk about using a 3000 VPN concentrator 
> or an ASA but I have access to neither.  I don’t see why IOS should be 
> any different but its not working even though I see the accounting 
> packet going to the CAS when the VPN client connects.  The discovery 
> host is configured as the CAM (tried the CAS with the same result). 
> The agent always pops up asking me for my username/password.  Is IOS 
> VPN accounting supported with RADIUS single sign-on?
>
> --
>
> Shane P. Miles
>
>  
>
>
> No virus found in this outgoing message.
> Checked by AVG.
> Version: 7.5.524 / Virus Database: 269.23.10/1421 - Release Date: 
> 5/7/2008 5:23 PM
>

No virus found in this incoming message.
Checked by AVG. 
Version: 7.5.524 / Virus Database: 269.23.10/1421 - Release Date: 5/7/2008 5:23 
PM
 

No virus found in this outgoing message.
Checked by AVG. 
Version: 7.5.524 / Virus Database: 269.23.14/1425 - Release Date: 5/9/2008 
12:38 PM
 

Reply via email to