Cisco MDS-9124 Troubleshooting Guide - Page 413
request, accept, request reject, Cisco MDS 9000 Family Troubleshooting Guide, Release 3.x, OL-9285-05
View all Cisco MDS-9124 manuals
Add to My Manuals
Save this manual to your list of manuals |
Page 413 highlights
Chapter 20 Troubleshooting IP Storage Services iSCSI Issues Send documentation comments to [email protected] switch# switch# Mar 4 23:16:20 securityd: received CHAP authentication request for user002 Mar 4 23:16:20 securityd: RADIUS is enabled, hence it will be tried first for CHAP authentication Mar 4 23:16:20 securityd: reading RADIUS configuration Mar 4 23:16:20 securityd: opening radius configuration for group:default Mar 4 23:16:20 securityd: opened the configuration successfully Mar 4 23:16:20 securityd: GET request for RADIUS global config Mar 4 23:16:20 securityd: got back the return value of global radius configuration operation:success Mar 4 23:16:20 securityd: closing RADIUS pss configuration Mar 4 23:16:20 securityd: opening radius configuration for group:default Mar 4 23:16:20 securityd: opened the configuration successfully Mar 4 23:16:20 securityd: GETNEXT request for radius index:0 addr: Mar 4 23:16:20 securityd: got some reply from 171.71.49.197 Mar 4 23:16:20 securityd: verified the response from:171.71.49.197 Mar 4 23:16:20 securityd: RADIUS server sent accept for authentication request for user002 Mar 4 23:16:25 securityd: received CHAP authentication request for user002 Mar 4 23:16:25 securityd: RADIUS is enabled, hence it will be tried first for CHAP authentication Mar 4 23:16:25 securityd: reading RADIUS configuration Mar 4 23:16:25 securityd: opening radius configuration for group:default Mar 4 23:16:25 securityd: opened the configuration successfully Mar 4 23:16:25 securityd: GET request for RADIUS global config Mar 4 23:16:25 securityd: got back the return value of global radius configuration operation:success Mar 4 23:16:25 securityd: closing RADIUS pss configuration Mar 4 23:16:25 securityd: opening radius configuration for group:default Mar 4 23:16:25 securityd: opened the configuration successfully Mar 4 23:16:25 securityd: GETNEXT request for radius index:0 addr: Mar 4 23:16:25 securityd: got some reply from 171.71.49.197 Mar 4 23:16:25 securityd: verified the response from:171.71.49.197 Mar 4 23:16:25 securityd: RADIUS server sent accept for authentication request for user002 Mar 4 23:16:25 securityd: got some reply from 171.71.49.197 Mar 4 23:16:25 securityd: verified the response from:171.71.49.197 Mar 4 23:16:25 securityd: RADIUS server sent accept for authentication request for user002 The previous example shows that the iSCSI client has been authenticated three times, first for the switch login, and the second and third times for the iSCSI driver login. The switch sends RADIUS attributes 1, 3, 4, 5, 6, 60 and 61 to the RADIUS server. The RADIUS server only needs to respond with request accept or request reject. The following example shows a RADIUS authentication. 639 2003y3m14d 15h12m48s 640 2003y3m14d 15h12m48s Message Type=Access_Request 641 2003y3m14d 15h12m48s ID=243, Length=90 642 2003y3m14d 15h12m48s User name=user002 643 2003y3m14d 15h12m48s NAS IP address=2887147911 644 2003y3m14d 15h12m48s CHAP password=‰j÷