[tac_plus] Re: single connection
john heasley
heas at shrubbery.net
Wed Mar 18 23:33:31 UTC 2009
Thu, May 29, 2008 at 03:32:18PM -0600, Dan Schmidt:
> Thanks for kindly for your reply.
>
> The symptoms are that, if multiple sessions are opened - one right after
> the other, exactly every other session fails to contact the tacacs
> server (defaults to local authentication) spitting out that debug
> message. Perhaps it is a bug on the 7600's, as the 6500's in that city
> are completely fine. (And 3750's, ect.)
>
> Single-connection was implemented in CiscoSecure Release 1.0.1 - is it
> fully supported in tac_plus?
>
> Obviously, the work around is to disable single connection, but that
> creates more connections to the tacacs server.
I FINALLY researched this extensively. The problem is that, except for
IOS-XR, single-connection does not work, period. And, Cisco told me that
they would not fix it.
Note that the tac_plus daemon does not support it anyway; I'd just jammed
basic debugging code into it. I don't know if I'll add it in the future.
More information about the tac_plus
mailing list