Hi,
I was wondering if anyone would be able to help me with this. I recently
installed the IAS service on a Windows 2003 server and enabled a radius
client. I followed the IAS Operations Guide best pratice. The interface to
the radius server is a Cisco PIX. When I go to log in on the PIX it'll
return a user credentials error message.
This is the message I can find in the radius server event log. The
pre-shared keys are the same too. The 192.168.4.1 is the address of the PIX.
I've changed the name of the server and the domain account (to cisco) but in
troubleshooting I was using my own administrative account.
--------------------------------------
Event Type: Error
Event Source: IAS
Event Category: None
Event ID: 3
Date: 9/19/2006
Time: 1:17:48 PM
User: N/A
Computer: SERVERNAME
Description:
Access request for user cisco was discarded.
Fully-Qualified-User-Name = DOMAIN\cisco
NAS-IP-Address = 192.168.4.1
NAS-Identifier = <not present>
Called-Station-Identifier = <not present>
Calling-Station-Identifier = 67.78.117.181
Client-Friendly-Name = PIX
Client-IP-Address = 192.168.4.1
NAS-Port-Type = <not present>
NAS-Port = 11
Proxy-Policy-Name = Use Windows authentication for all users
Authentication-Provider = Windows
Authentication-Server = <undetermined>
Reason-Code = 2
Reason = There are not sufficient access rights to process the request.
--------------------------------------
Please let me know how I could troubleshoot this some more
Thank you in advance,
Jay
|