<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACS 5.1 User password expire not working in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-5-1-user-password-expire-not-working/m-p/1760355#M241989</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;FORGOT TO SAY:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I use ACS 5.1 Internal Store User Database! I do not point to any LDAP or MS AD or other external User Database store.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Fri, 26 Aug 2011 19:30:15 GMT</pubDate>
    <dc:creator>albertocolosi</dc:creator>
    <dc:date>2011-08-26T19:30:15Z</dc:date>
    <item>
      <title>ACS 5.1 User password expire not working</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-1-user-password-expire-not-working/m-p/1760354#M241987</link>
      <description>&lt;P&gt;hi, I have configured under Administration password policies about password lenght, items to be putted as number, letters and so on.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;on the second tab is the password expire for users and I configured to expire after 90 days.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I even tried creating a new user and changing a password from an existing user using Apache TOMCAT WAR&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have checked CLOCK of ACS appliance and setted up NTP on our internal NTP servers&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;even I create a new user or I change the password via Admin GUI or I change the user password via Apache TOMCAT WAR, I have the user being disabled in a few of minutes, half an hour.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As last, with CISCO AnyConnect is possible to warn the user about the password being expireing and if so, the change could be driven via AnyConnect or is absolutely needed a User Hand Task on the Apache TOMCAT portal I setted up with the ACS WAR application?&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;As last last, can't I disable the logon on the ASA 5510 8.3 IOS AVOIDING the user to connect via download (from the ASA portal) of the AnyConnect application?. This is nice to avoid people to connect from Internet Cafe' and other puglic facilities not already having the AnyConnect application installed from a local DISK or USB device?&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 01:20:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-1-user-password-expire-not-working/m-p/1760354#M241987</guid>
      <dc:creator>albertocolosi</dc:creator>
      <dc:date>2019-03-11T01:20:54Z</dc:date>
    </item>
    <item>
      <title>ACS 5.1 User password expire not working</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-1-user-password-expire-not-working/m-p/1760355#M241989</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;FORGOT TO SAY:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I use ACS 5.1 Internal Store User Database! I do not point to any LDAP or MS AD or other external User Database store.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 26 Aug 2011 19:30:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-1-user-password-expire-not-working/m-p/1760355#M241989</guid>
      <dc:creator>albertocolosi</dc:creator>
      <dc:date>2011-08-26T19:30:15Z</dc:date>
    </item>
    <item>
      <title>ACS 5.1 User password expire not working</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-1-user-password-expire-not-working/m-p/1760356#M241991</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;I think you are hitting a known issue with ACS 5.1:&lt;/P&gt;&lt;P&gt;CSCtf06311: All internal users disabled automatically after logging in a single user&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This is resolved in a patch for ACS 5.1.&amp;nbsp; Cumulative patch 5.1.0.44.3 that can be downloaded from CCO&lt;/P&gt;&lt;P&gt;If you decide to download a patch version it may be worth taking the latest cumulative patch for ACS 5.1: 5.1.0.44.6&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 28 Aug 2011 05:31:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-1-user-password-expire-not-working/m-p/1760356#M241991</guid>
      <dc:creator>jrabinow</dc:creator>
      <dc:date>2011-08-28T05:31:28Z</dc:date>
    </item>
    <item>
      <title>ACS 5.1 User password expire not working</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-1-user-password-expire-not-working/m-p/1760357#M241992</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; I'll try, by now I can't evaluate till tried the patch!. How I have to proceed to apply it?&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 31 Aug 2011 10:08:06 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-1-user-password-expire-not-working/m-p/1760357#M241992</guid>
      <dc:creator>albertocolosi</dc:creator>
      <dc:date>2011-08-31T10:08:06Z</dc:date>
    </item>
    <item>
      <title>ACS 5.1 User password expire not working</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-1-user-password-expire-not-working/m-p/1760358#M241994</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;To install a patch define a repository on ACS (cumulative patches are larger than 32MB so you can't use TFTP for this), copy the patch file to the repository, then on ACS' CLI:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;# acs patch install &lt;FIULENAME&gt; repository &lt;REPOSITORY name=""&gt;&lt;/REPOSITORY&gt;&lt;/FIULENAME&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 31 Aug 2011 13:55:51 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-1-user-password-expire-not-working/m-p/1760358#M241994</guid>
      <dc:creator>Javier Henderson</dc:creator>
      <dc:date>2011-08-31T13:55:51Z</dc:date>
    </item>
    <item>
      <title>ACS 5.1 User password expire not working</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-1-user-password-expire-not-working/m-p/1760359#M241996</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt; Hi, we have just installed latest patch level for 5.1&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; so now it is 44.6 (as ending digits)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I have enabled the password expire and by now seems to work fine. I don't have any user being disabled.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I don't know if when 90 days will pass, users will be correctly be disabled as rules say.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;By now I'm starting a new enviroment and by now I don't have any user with a password too old so to expire but I have one with around 30 days! possible I'll conduct a test lowering down password expiry to 30 days so to test.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;thanks by now.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;a question! to know when and how to have a user account DISABLED with too much BAD PASSWORD tries I'll have to open a new request or you can answer now here to this new item?. Is strange for CISCO to have redeveloped ACS from 4 to 5 without password aging and usr disablying due to too much bad password issues.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;here in EU is a LAW need! so for us is a big trouble. Please help us.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Sep 2011 15:11:38 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-1-user-password-expire-not-working/m-p/1760359#M241996</guid>
      <dc:creator>albertocolosi</dc:creator>
      <dc:date>2011-09-21T15:11:38Z</dc:date>
    </item>
    <item>
      <title>ACS 5.1 User password expire not working</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-5-1-user-password-expire-not-working/m-p/1760360#M241998</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;ACS 5.3 will contain the following feature. ACS 5.3 is scheduled fo release in October&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Internal Users can be disabled based on&lt;/P&gt;&lt;UL&gt;&lt;LI&gt;&lt;DIV style="text-align: left; line-height: 95%; margin-top: 14.4pt; text-indent: -0.26in; unicode-bidi: embed; direction: ltr; margin-bottom: 0pt; margin-left: 0.26in; vertical-align: baseline;"&gt;The particular date&lt;/DIV&gt;&lt;BR /&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV style="text-align: left; line-height: 95%; margin-top: 14.4pt; text-indent: -0.26in; unicode-bidi: embed; direction: ltr; margin-bottom: 0pt; margin-left: 0.26in; vertical-align: baseline;"&gt;The number of days from the last enabled date&lt;/DIV&gt;&lt;BR /&gt;&lt;/LI&gt;&lt;LI&gt;&lt;DIV style="text-align: left; line-height: 95%; margin-top: 14.4pt; text-indent: -0.26in; unicode-bidi: embed; direction: ltr; margin-bottom: 0pt; margin-left: 0.26in; vertical-align: baseline;"&gt;The number of failed attempts count&lt;/DIV&gt;&lt;BR /&gt;&lt;/LI&gt;&lt;/UL&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Wed, 21 Sep 2011 16:03:34 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-5-1-user-password-expire-not-working/m-p/1760360#M241998</guid>
      <dc:creator>jrabinow</dc:creator>
      <dc:date>2011-09-21T16:03:34Z</dc:date>
    </item>
  </channel>
</rss>

