permalinkembedsaveparentgive gold[–]ScriptBlockCCE-V, CCP-M, CCA-N 0 points1 point2 points 2 years ago(6 children)What version of 10.1? Here is the trace : Wed Nov 4 16:50:13 2015 /home/build/rs_110_62_3_RTM/usr.src/netscaler/aaad/naaad.c: main timer 1 firing... Or wrong Netscaler IP setup on the Radius server? Response code - 11. useful reference
This should force a response code of ‘2' on a successful authentication Then in User Authentication Settings add the User RADIUS Profile you just created to the monitoring user you're using All Rights Reserved Privacy & Terms HomeAbout MeConsultingToolsCheat SheetsCitrix, Microsoft, & VMware Engineers Cheat SheetHome Automation - Internet of Things (IoT) Cheat SheetContact Me Citrix NetScalerHow to troubleshoot RADIUS or TACACS I've followed your steps, but the monitor is returning 11 Access-Challenge. You may wish to mark the thread as 'answered' to keep the forums clean & up-to-date.
We recently upgraded the firmware and the current configuration was working on the 9.3 for mobile devices. The user is named User2:Tue Feb 5 09:50:11 2013
process_kernel_socket call to authenticate
user :User2, vsid :414
Tue Feb 5 09:50:11 2013
start_radius_auth spoonchild Newbie Posts: 4 Karma: +0/-0 Re: rad_send_request failed No valid RADIUS responses received « Reply #4 on: April 13, 2010, 05:39:02 am » I hadn't tried that till you suggested I can confirm 119.7 is solid.
To resolve the issue, I had to delete the server and recreate it directly with the IP address. I'm allowing MS-Chap-v2, MS-Chap, Chap, or Pap, SPAP as it said in that guide.I'm sure it's something in my config of the NPS server or pfsense box, but I just don't Important things to configure is the Type (RADIUS) and Destination Port (1812) on the Standard Parameters tab. Ns_radius_dns_error_handler 4004 You will immediately see all the "LOGIN_FAILED" event types as you go through each ns.log (these are the logs stored at /var/log on the Netscaler).
Changing the current auth-server from server to IP did not resolve the issue. Process_radius Received Rad_access_reject Except in the article, we need to set the credential index to primary. I'm going to run through some screenshots from a NS 9.3 device because that's what I have in front of me at the moment but the same troubleshooting methods can apply Regards, Alex Go to the full postAlexis ROGER Members #1 Alexis ROGER 20 posts Posted 04 November 2015 - 04:35 PM Hi, I'm trying to configure a
After a aaad.debug it shows up with a 4001 error and 4004 error on RSA. Pay attention to the message, it will tell you why the authentication attempt failed. Netscaler No Valid Radius Responses Received You'll need to configure your session policy for mobile users to tell the NS to use LDAP for SSO to WI as well. Ldap Rejecting With Error Code 4003 Also if more information is needed, or this topic has been discussed please let me know.
Basically I just followed along the example from the online help at http://help.infragistics.com/NetAdvantage/Silverlight/current/CLR3.5/(I did substitute 9.2 from the example with the version that I'm using, 9.1). http://caribtechsxm.com/error-code/r6-error-code-11.php The same test with the RSA 8 is succesfull.The RSA Server Logs in the secruity console are empty. Lastly you can run a network capture/trace when users are experiencing the issue. permalinkembedsavegive gold[–]daez0rNetScaler[S] 0 points1 point2 points 2 years ago(1 child)Yea, I already followed http://support.citrix.com/article/CTX125364. Netscaler Radius Monitor
I can get in fine using a web browser, to same VIP.Any thoughts on this ? 1337-333462-1768663 Back to top William Fulmer Members #27 William Fulmer 116 posts Posted 10 October Maybe if you are able to isolate the issue in a separate sample which is not so big and complex then we could take it and try to see what's going It is possbible that the tcpdump don´t write the UDP traffic? 1337-333462-1752901 Back to top Vikash Jain Citrix Employees #20 Vikash Jain 73 posts Posted 31 July 2013 - 12:33 PM this page Try again.
Troubleshooting Citrix NetScaler LDAP Authenticati... Rejecting With Error Code 4009 So type the following:cat /tmp/aaad.debug A successful authentication against the Access Gateway would look like this. Several functions may not work.
Also, are you sure that the problem comes from the XWOB? More information on RADIUS: http://en.wikipedia.org/wiki/RADIUS Share this:Click to print (Opens in new window)Click to share on Twitter (Opens in new window)Share on Facebook (Opens in new window)Click to share on LinkedIn He also has an extensive background in web architecture and information security. Get More Info Please take a server side trace also, that might put some light on the issue. 1337-333462-1753431 Back to top Christian Hock Members #23 Christian Hock 86 posts Posted 02 August 2013
I find the SSH session windows often difficult to read so I usually copy and paste the text into Notepad to parse through it: Carefully reviewing the log will reveal the one project at a time. He is certified in several technologies and is 1 of 50 people globally that is a recipient of the prestigious Citrix Technology Professional (CTP) award. You can look at all the failed logins in the ns.log.
Citrix Utilities Citrix Receiver Cleanup - Removes/Uninstalls the Receiver client Citrix VDA Cleanup Utility - Removes/Uninstalls the VDA for servers and workstations Citrix Scout - Quick health check on environment, uploads