<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Changed my AD password now cant get into enable !!! in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/changed-my-ad-password-now-cant-get-into-enable/m-p/1823593#M227581</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Steve,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just out of curiosity can you verify your user account in ACS and make sure that the enable password is set to use external database?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2/user/guide/UsrMgt.html#wp273989"&gt;http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2/user/guide/UsrMgt.html#wp273989&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Tarik Admani&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 30 Dec 2011 17:36:47 GMT</pubDate>
    <dc:creator>Tarik Admani</dc:creator>
    <dc:date>2011-12-30T17:36:47Z</dc:date>
    <item>
      <title>Changed my AD password now cant get into enable !!!</title>
      <link>https://community.cisco.com/t5/network-access-control/changed-my-ad-password-now-cant-get-into-enable/m-p/1823592#M227561</link>
      <description>&lt;P&gt;Hi&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Changed my AD password and now i cannot get into the enable side of the cisco switches on our network (we have no routers).&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Looking on the logs for the ACS v4.2 I can see the following -&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On TACACS+ Accounting you can see the connections which have worked - it the initial tty connections - &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;When i look in the failed attempts i see the following -&lt;/P&gt;&lt;P&gt;Auth failed -&amp;nbsp; External&amp;nbsp; DB user invalid or bad password&amp;nbsp; or on another occasion internal error&lt;/P&gt;&lt;P&gt;or EAP-TLS or PEAP authentication failed due to unknown CAcertificate during SSL handshake.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Anyone seen this before ?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Steve&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 01:40:20 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/changed-my-ad-password-now-cant-get-into-enable/m-p/1823592#M227561</guid>
      <dc:creator>steve switzer</dc:creator>
      <dc:date>2019-03-11T01:40:20Z</dc:date>
    </item>
    <item>
      <title>Changed my AD password now cant get into enable !!!</title>
      <link>https://community.cisco.com/t5/network-access-control/changed-my-ad-password-now-cant-get-into-enable/m-p/1823593#M227581</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Steve,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Just out of curiosity can you verify your user account in ACS and make sure that the enable password is set to use external database?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-external-small" href="http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2/user/guide/UsrMgt.html#wp273989"&gt;http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2/user/guide/UsrMgt.html#wp273989&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Tarik Admani&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 30 Dec 2011 17:36:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/changed-my-ad-password-now-cant-get-into-enable/m-p/1823593#M227581</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2011-12-30T17:36:47Z</dc:date>
    </item>
  </channel>
</rss>

