08-24-2021 02:36 PM
I’m trying to test one of our new VSP5520s. I had been under the impression that VOSS is VOSS regardless of which switch, but maybe I was wrong. I have configured a loopback with an IP and SPBM/ISIS. I have an adjacency and I can ping the switch via that loopback. However, I cannot SSH to the switch and pings from the switch only work if I specify the loopback as the source. We also have new VSP4900 and VSP7400 that didn’t require anything special to be able to SSH to the loopback IP. Pings from those models also didn’t require me to specify a source. What am I missing? SSHD is enabled. I see a route to the subnet I’m SSHing from. I’m guessing this has something to do with the mgmt VRF or something along those lines, but I’ve not been able to sort it out.
Solved! Go to Solution.
08-26-2021 02:13 PM
08-27-2021 03:52 PM
Just wanted to add a couple of notes for anyone else that might run into this. The vendor code is 1584 (Nortel) and the attribute number is 192 (Access-Priority), format is decimal and value is 6 (RWA access).
08-26-2021 04:09 PM
Glad to see it solved.
Enjoy
Mig
08-26-2021 02:13 PM
Success. It was the RADIUS attribute. Here are screenshots of NPS.
08-26-2021 01:53 PM
After getting the new switch up and running I get the same error when trying to SSH with RADIUS authentication. If I don’t enable RADIUS, local login works.