Coder Social home page Coder Social logo

Rhel 7 accounting errors about tac_plus HOT 6 CLOSED

facebook avatar facebook commented on May 5, 2024
Rhel 7 accounting errors

from tac_plus.

Comments (6)

cooperlees avatar cooperlees commented on May 5, 2024

Hi,

What version are you running on your rhel 6 box? Is that error from tacacs log or your network devices?

I'd personally tcpdump full packets and compare the two exchanges and see whats different on the wire - https://github.com/isginf/pcap-diff or there are a few others (I've never used this one).

I believe our accounting all works with this version and over IPv6.

from tac_plus.

tgreaser avatar tgreaser commented on May 5, 2024

We run Rhel 7.5 ..
I will push this code to fedora 28 , and RHEL 6.10 and test.
And thanks for the pcap-diff will be interesting to check out..

from tac_plus.

tgreaser avatar tgreaser commented on May 5, 2024

PS running old version on rhel 6
tac_plus version 4.4rc2-3 (Extended Tac_plus)

from tac_plus.

tgreaser avatar tgreaser commented on May 5, 2024

Having same issues with Fedora 27 and Fedora 28**
ACCT, flags=0x6a method=192 priv_lvl=160
type=126 svc=79
AUTHOR data length (416) exceeds packet length 118
10.10.10.15: acct minimum payload: 263, got: 127

Need a little help on telling fedora 28 to tell it to compile without wrappers as its depreciated

Ive tried a super basic .cfg .. same results. I see the accounting packets with the data payload in pcap but the process throws the data lenght every time.. I will try a deb box tomorrow..

from tac_plus.

tgreaser avatar tgreaser commented on May 5, 2024

cooperlees
Thanks for taking the time to look @ my post.. Please note this was my issue as I screwed up the secrete on the account statement on my Juniper gear, but had the tacplus-server secret right.
Once i seen a Cisco accounting log come through I know tac was 100%..
I went back and re did all my tac and accounting on juniper gear that I had pointed to the new tacac plus server..

I feel lame but hope this post makes someone revisit their account config and their tacplus-server config .

Juniper posts that if you don't have a account server set it will use what you used in tacplus-server..

from tac_plus.

cooperlees avatar cooperlees commented on May 5, 2024

Awesome. Glad you worked it out and took some time to debug it! Good luck.

from tac_plus.

Related Issues (9)

Recommend Projects

  • React photo React

    A declarative, efficient, and flexible JavaScript library for building user interfaces.

  • Vue.js photo Vue.js

    🖖 Vue.js is a progressive, incrementally-adoptable JavaScript framework for building UI on the web.

  • Typescript photo Typescript

    TypeScript is a superset of JavaScript that compiles to clean JavaScript output.

  • TensorFlow photo TensorFlow

    An Open Source Machine Learning Framework for Everyone

  • Django photo Django

    The Web framework for perfectionists with deadlines.

  • D3 photo D3

    Bring data to life with SVG, Canvas and HTML. 📊📈🎉

Recommend Topics

  • javascript

    JavaScript (JS) is a lightweight interpreted programming language with first-class functions.

  • web

    Some thing interesting about web. New door for the world.

  • server

    A server is a program made to process requests and deliver data to clients.

  • Machine learning

    Machine learning is a way of modeling and interpreting data that allows a piece of software to respond intelligently.

  • Game

    Some thing interesting about game, make everyone happy.

Recommend Org

  • Facebook photo Facebook

    We are working to build community through open source technology. NB: members must have two-factor auth.

  • Microsoft photo Microsoft

    Open source projects and samples from Microsoft.

  • Google photo Google

    Google ❤️ Open Source for everyone.

  • D3 photo D3

    Data-Driven Documents codes.