The AR158E router’s version was V200R003C01SPC900, it was deployed by “telnet” function. Login into the AR158E router through cmd or SecureCRT, but users would always be kicked out immediately by router, and there was a prompt “the link is closed by remote host”.
1、Check the quantity of the link between PC and AR158E through ping test. But there was no package lost or delay, the link was stable.
2、Check the configuration of “telent”
local-user admin password cipher ***
local-user admin privilege level 15
local-user admin service-type telnet
user-interface vty 0 4
protocol inbound all
The configuration was correct.
3、Check the other configuration of AR158E router. Hwtacas server was deployed, and was used in AAA:
hwtacacs-server template ***
hwtacacs-server authentication ****
hwtacacs-server authorization ****
hwtacacs-server accounting ****
hwtacacs-server shared-key cipher ****
authentication-mode hwtacacs local
authorization-mode hwtacacs local none
1、 link problem
2、 configuration problem
3、 other problem
1、When there is requirement to add hwtacas authentication in router, we should make sure the link between router and hwtacas server is stable. If we are not sure about the quantity of this link, we can add “accounting start-fail online” under accounting-scheme view, and then when a user login, it can keep online and won’t be kick out automatically.