Белая книга для Cisco Cisco Identity Services Engine Software

Скачать
Страница из 12
*Nov 16 03:34:30.537: EPM_SESS_EVENT: 
Executed [ip access-list extended
xACSACLx-IP-MAB-FAIL-ACL-528741f3] command through parse_cmd. Result= 0
*Nov 16 03:34:30.538: EPM_SESS_EVENT: Executed [1 permit icmp any any]
command through parse_cmd. Result= 0
*Nov 16 03:34:30.539: EPM_SESS_EVENT: Executed [end] command through parse_cmd.
Result= 0
*Nov 16 03:34:30.541: EPM_SESS_EVENT: 
ACL xACSACLx-IP-MAB-FAIL-ACL-528741f3
provisioning successful
*Nov 16 03:34:31.136: EPM_SESS_EVENT: Successful feature attrs provided for
SM ACCOUNTING PLUG-IN
*Nov 16 03:34:31.136: EPM_SESS_EVENT: Successful feature attrs provided for
EPM ACL PLUG-IN
*Nov 16 03:34:31.136: AUTH-EVENT: Rcvd IPC call for pre 0x5F000002, inst
0xB2000072, hdl 0x95000073
*Nov 16 03:34:31.136: AUTH-EVENT: 
Raising ext evt Template Activated (8)
on session 0xCC000363, client (unknown) (0), hdl 0x00000000, attr_list
0xA5000E24
*Nov 16 03:34:31.142: AUTH-EVENT: [dc7b.94a3.7005, Gi1/0/1] Handling external
PRE
 event Template Activated for context 0xCC000363.
When there is no correct authorization profile on the ISE, it reports:
11001 Received RADIUS Access-Request
11017 RADIUS created a new session
11003 Returned RADIUS Access-Reject
Also, the Event 5400 Authentication failed message is presented, but no more details are revealed. After you
create the username with the cisco123 password, the error remains the same, even when there are correct
Authentication/Authorization rules. The only requirement to have that feature work correctly is to have a
correct authorization profile.
Related Information
Identity-Based Networking Services Configuration Guide, Cisco IOS XE Release 3SE
• 
Consolidated Platform Command Reference, Cisco IOS XE 3.2SE
• 
Technical Support & Documentation - Cisco Systems
• 
Updated: Nov 26, 2013
Document ID: 116838