Procedure 9 - Validate The RADIUS Configuration On The NAD

Step 1
For Catalyst switches, run the Evaluate Configuration Validator (as described in Procedure 6) to validate the RADIUS configuration.

Step 2
From the NAD, try to ping the ISE Policy Services Nodes (PSN).

Step 3
If there are any filtering devices between the NAD and the ISE PSN, verify that the device is allowing RADIUS authentication, authorization, and accounting (UDP 1645/1656 or 1812/1813).

Step 4
You can use the Cisco IOS® Software test feature to run a test authentication. Enter the following command from exec mode:

  • test aaa group radius {test_user} {test_password} new-code