(RADIATOR) TACACS+ user-changeable password/password aging

Hugh Irvine hugh at open.com.au
Thu Jul 22 02:44:35 CDT 2004


Hello Nicolai -

Neither of these things are planned for Radiator.

regards

Hugh


On 21 Jul 2004, at 22:14, Nicolai van der Smagt wrote:

> Hi,
>
> Cisco's implementation of TACACS+ has the feature that when users enter
> their loginname and an empty password at the router's prompt, they are
> prompted to enter a new password. This password is then entered in the
> user database as new TACACS+ password for this user.
> Another feature is that password aging is supported, with prompts from
> the router after successful login when your password is close to aging,
> something like "Your password will expire in 12 hours, 3 minutes, 18
> seconds".
>
> These are likely Cisco's private extensions to TACACS+, but is there 
> any
> chance that they will be implemented in ServerTACACSPLUS in the (near)
> future?
> -- 
> Mvg,
>
> Nicolai van der Smagt	~	  BBned NV.
> Security Officer	~	BBeyond BV.
> PGP ~ http://www.bbned.nl/pgp/security.txt
>
> --
> Archive at http://www.open.com.au/archives/radiator/
> Announcements on radiator-announce at open.com.au
> To unsubscribe, email 'majordomo at open.com.au' with
> 'unsubscribe radiator' in the body of the message.
>
>

NB: have you included a copy of your configuration file (no secrets),
together with a trace 4 debug showing what is happening?

-- 
Radiator: the most portable, flexible and configurable RADIUS server
anywhere. Available on *NIX, *BSD, Windows, MacOS X.
-
Nets: internetwork inventory and management - graphical, extensible,
flexible with hardware, software, platform and database independence.
-
CATool: Private Certificate Authority for Unix and Unix-like systems.

--
Archive at http://www.open.com.au/archives/radiator/
Announcements on radiator-announce at open.com.au
To unsubscribe, email 'majordomo at open.com.au' with
'unsubscribe radiator' in the body of the message.


More information about the radiator mailing list