Solved

ACServer 4.1 can't get enable access via telnet/ssh now?

Posted on 2010-09-12
1
1,611 Views
Last Modified: 2012-08-13
Hello,
  I just implimented a ACServer 4.1 on my network. I am using an ASA 5520 with TACACS+ authentication. I did something recently and now I can't authenticate to get to enable access via telnet/ssh. I have ACServer querying active directory to authenticate my users.

here's what I know. My AD account is a domain admin. I was previously setup correctly so that I can get into the device via telnet/ssh/asdm. I am able to connect with full access to the ASDM using my AD username and password. I am not setup as a local user on the ASA. I am able to actually log into the ASA via telnet/ssh but when I use the enable command I get a password box. I used to use my AD password and was able to get in but not it won't let me. I also tried a local user on the ASA and same thing. ON the ACServer under reports and activity - failed attempts - I see the following errror in regards to my enable attempt.

ACS password invalid.

I've tried every password imaginable! where should I look?


Could this have anythign to do with it? Privlege level 0 on the enable access?
 ASDM
0
Comment
Question by:jbla9028
[X]
Welcome to Experts Exchange

Add your voice to the tech community where 5M+ people just like you are talking about what matters.

  • Help others & share knowledge
  • Earn cash & points
  • Learn & ask questions
1 Comment
 
LVL 1

Accepted Solution

by:
jbla9028 earned 0 total points
ID: 33657253
disregard. I figured it out. under the ACS under the user there's an option list as TACACS+ Enable password for some reason it got changed for all users to use sperate passwrod it should be on use external databse password - windows database.

0

Featured Post

Free Tool: Path Explorer

An intuitive utility to help find the CSS path to UI elements on a webpage. These paths are used frequently in a variety of front-end development and QA automation tasks.

One of a set of tools we're offering as a way of saying thank you for being a part of the community.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

There are many useful and sometimes not well documented or forgotten IOS or ASA/PIX commands. See IPE article here , there was also one on PacketU and on Cisco Tips & Tricks. Below are my favorites. I give also a few most often used for Cisco IPS an…
Concerto Cloud Services, a provider of fully managed private, public and hybrid cloud solutions, announced today it was named to the 20 Coolest Cloud Infrastructure Vendors Of The 2017 Cloud  (http://www.concertocloud.com/about/in-the-news/2017/02/0…
As a trusted technology advisor to your customers you are likely getting the daily question of, ‘should I put this in the cloud?’ As customer demands for cloud services increases, companies will see a shift from traditional buying patterns to new…
Both in life and business – not all partnerships are created equal. Spend 30 short minutes with us to learn:   • Key questions to ask when considering a partnership to accelerate your business into the cloud • Pitfalls and mistakes other partners…

726 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question