<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: CS ACS User Password Change Reminder in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/cs-acs-user-password-change-reminder/m-p/1707343#M238395</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think there is an enhancement for this in patch 5.2.0.26.2&amp;nbsp; and higher that includes the following:&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;CSCtk32168: Add an option to change password when password expires (T+ and Radius) &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;After this patch is installed you get an option in the user authentication settings to either:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;- Disable user account&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;- Expire the password&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;When expiry period is exceeded&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;If password is expired then user will be prompted to change password on next authentication&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;Note that latest patch for 5.2 is 5.2.0.26.4. All patches are cumulative&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 06 May 2011 10:03:47 GMT</pubDate>
    <dc:creator>jrabinow</dc:creator>
    <dc:date>2011-05-06T10:03:47Z</dc:date>
    <item>
      <title>CS ACS User Password Change Reminder</title>
      <link>https://community.cisco.com/t5/network-access-control/cs-acs-user-password-change-reminder/m-p/1707342#M238384</link>
      <description>&lt;P&gt;&lt;!--[if gte mso 10]&gt;
&lt;style&gt;
 /* Style Definitions */
 table.MsoNormalTable
	{mso-style-name:"Table Normal";
	mso-tstyle-rowband-size:0;
	mso-tstyle-colband-size:0;
	mso-style-noshow:yes;
	mso-style-priority:99;
	mso-style-qformat:yes;
	mso-style-parent:"";
	mso-padding-alt:0cm 5.4pt 0cm 5.4pt;
	mso-para-margin:0cm;
	mso-para-margin-bottom:.0001pt;
	mso-pagination:widow-orphan;
	font-size:11.0pt;
	font-family:"Calibri","sans-serif";
	mso-ascii-font-family:Calibri;
	mso-ascii-theme-font:minor-latin;
	mso-hansi-font-family:Calibri;
	mso-hansi-theme-font:minor-latin;
	mso-bidi-font-family:Arial;
	mso-bidi-theme-font:minor-bidi;}
&lt;/style&gt;
&lt;![endif]--&gt;&lt;/P&gt;&lt;P class="MsoNormal"&gt;We installed CiscoSecure Access Control System 5.2 appliance and we are facing the following technical issue:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoListParagraph" style="margin-left: 18pt; text-indent: -18pt;"&gt;&lt;SPAN&gt;&lt;SPAN&gt;-&lt;SPAN style="font: 7pt &amp;amp;quot;Times New Roman&amp;amp;quot;;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;When we create a user on ACS (not an administrator, but a normal user to access Network Devices), we are setting the &lt;SPAN class="content"&gt;&lt;STRONG&gt;Disable user account after &lt;/STRONG&gt;&lt;/SPAN&gt;&lt;EM&gt;&lt;STRONG style="sans-serif&amp;amp;quot: ; font-family: &amp;amp;quot; ,&amp;amp;quot: ; Calibri&amp;amp;quot: ; "&gt;n&lt;/STRONG&gt;&lt;/EM&gt;&lt;SPAN class="content"&gt;&lt;STRONG&gt; days if password is not changed&lt;/STRONG&gt; to 90 days and the &lt;STRONG&gt;Display reminder after &lt;/STRONG&gt;&lt;/SPAN&gt;&lt;EM&gt;&lt;STRONG style="sans-serif&amp;amp;quot: ; font-family: &amp;amp;quot; ,&amp;amp;quot: ; Calibri&amp;amp;quot: ; "&gt;n&lt;/STRONG&gt;&lt;/EM&gt;&lt;SPAN class="content"&gt;&lt;STRONG&gt; days&lt;/STRONG&gt; after 80 days; in the Cisco Documentation (&lt;A href="http://www.cisco.com/en/US/partner/docs/net_mgmt/cisco_secure_access_control_system/5.2/user/guide/users_id_stores.html#wp1131174" target="_blank"&gt;http://www.cisco.com/en/US/partner/docs/net_mgmt/cisco_secure_access_control_system/5.2/user/guide/users_id_stores.html#wp1131174&lt;/A&gt;) it states that for the &lt;STRONG&gt;Display reminder after &lt;/STRONG&gt;&lt;/SPAN&gt;&lt;EM&gt;&lt;STRONG style="sans-serif&amp;amp;quot: ; font-family: &amp;amp;quot; ,&amp;amp;quot: ; Calibri&amp;amp;quot: ; "&gt;n&lt;/STRONG&gt;&lt;/EM&gt;&lt;SPAN class="content"&gt;&lt;STRONG&gt; days&lt;/STRONG&gt; field, the description is : &lt;STRONG&gt;Displays a reminder after&lt;/STRONG&gt;&lt;/SPAN&gt;&lt;EM&gt;&lt;STRONG style="sans-serif&amp;amp;quot: ; font-family: &amp;amp;quot; ,&amp;amp;quot: ; Calibri&amp;amp;quot: ; "&gt; n&lt;/STRONG&gt;&lt;/EM&gt;&lt;SPAN class="content"&gt;&lt;STRONG&gt; days to change password; the valid options are 1 to 365. This option, when set, only displays a reminder. It does not prompt you for a new password.&lt;/STRONG&gt; My question is the following: &lt;SPAN style="color: red;"&gt;how will the user be notified if we cannot add an email to users and this user has only access privileges to Network Devices ?&lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P class="MsoListParagraph" style="margin-left: 18pt; text-indent: -18pt;"&gt;&lt;SPAN&gt;&lt;SPAN&gt;-&lt;SPAN style="font: 7pt &amp;amp;quot;Times New Roman&amp;amp;quot;;"&gt;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; &lt;/SPAN&gt;&lt;/SPAN&gt;&lt;/SPAN&gt;The Users are being disabled after 90 days because they received no reminder and they have to manually reset their passwords everytime.&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 01:03:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cs-acs-user-password-change-reminder/m-p/1707342#M238384</guid>
      <dc:creator>f.hayeck</dc:creator>
      <dc:date>2019-03-11T01:03:59Z</dc:date>
    </item>
    <item>
      <title>Re: CS ACS User Password Change Reminder</title>
      <link>https://community.cisco.com/t5/network-access-control/cs-acs-user-password-change-reminder/m-p/1707343#M238395</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think there is an enhancement for this in patch 5.2.0.26.2&amp;nbsp; and higher that includes the following:&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;CSCtk32168: Add an option to change password when password expires (T+ and Radius) &lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;After this patch is installed you get an option in the user authentication settings to either:&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;- Disable user account&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;- Expire the password&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;When expiry period is exceeded&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;If password is expired then user will be prompted to change password on next authentication&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;&lt;/SPAN&gt;&lt;/P&gt;&lt;P&gt;&lt;SPAN class="nobr"&gt;Note that latest patch for 5.2 is 5.2.0.26.4. All patches are cumulative&lt;/SPAN&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 06 May 2011 10:03:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/cs-acs-user-password-change-reminder/m-p/1707343#M238395</guid>
      <dc:creator>jrabinow</dc:creator>
      <dc:date>2011-05-06T10:03:47Z</dc:date>
    </item>
  </channel>
</rss>

