[tac_plus] seeing lots of Read -1 bytes from router.example.net , expecting 12

heasley heas at shrubbery.net
Mon Jun 4 20:58:21 UTC 2012


Sat, Jun 02, 2012 at 02:07:57PM -0400, Asif Iqbal:
> How do I verify if those are keep-alive requests. This url suggests I am
> experiencing those keep-alive
> chats
> 
>  http://blog.xbsd.org/2010/10/20/cisco-css-and-tacacs
> 
> I have thousands of routers. It would be lot of work to add the disable in
> all of them.
> Is there may be another approach to this short from ignoring this massive
> amount
> of noises?

there is no "tacacs keepalive" msg.  this is a timeout; ie: the router
connects, then does not proceed with the auth process before the tacacs
server timed-out the session.


More information about the tac_plus mailing list