<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi Tymoffi, in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/reset-acsadmin-s-password-using-secondary-admin-node-when-pan-is/m-p/3016362#M25940</link>
    <description>&lt;P&gt;Hi Tymoffi,&lt;/P&gt;
&lt;P&gt;Here is an easy way for this issue:&lt;BR /&gt;&lt;BR /&gt;1-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Install the new ACS VM and make it ready.&lt;BR /&gt;&lt;BR /&gt;2-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Install root patch on both the new ACS and the old secondary ACS.&lt;BR /&gt;&lt;BR /&gt;3-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Get in to the root and browse to the folder /opt/CSCOacs/db:&lt;BR /&gt;&lt;BR /&gt;[root@Training-ACS1 db]# pwd&lt;BR /&gt;/opt/CSCOacs/db&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;4-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; In this folder there are 4 files:&lt;BR /&gt;&lt;BR /&gt;·&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Acs.db&lt;BR /&gt;&lt;BR /&gt;·&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; acs*.log&lt;BR /&gt;&lt;BR /&gt;·&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; dbkey.cfg&lt;BR /&gt;&lt;BR /&gt;·&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; dbcred.cal&lt;BR /&gt;&lt;BR /&gt;5-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; On the new ACS take a backup (copy) of these 4 files to somewhere.&lt;BR /&gt;&lt;BR /&gt;6-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Stop services in new ACS&lt;BR /&gt;&lt;BR /&gt;7-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Copy these files from Secondary ACS to new ACS&lt;BR /&gt;&lt;BR /&gt;8-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Start services once files are replaced.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Poonam Garg&lt;/P&gt;</description>
    <pubDate>Mon, 26 Jun 2017 02:26:54 GMT</pubDate>
    <dc:creator>poongarg</dc:creator>
    <dc:date>2017-06-26T02:26:54Z</dc:date>
    <item>
      <title>Reset ACSAdmin's password using Secondary admin node, when PAN is down dead?</title>
      <link>https://community.cisco.com/t5/network-access-control/reset-acsadmin-s-password-using-secondary-admin-node-when-pan-is/m-p/3016361#M25939</link>
      <description>&lt;P&gt;Hi all&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Here's the problem... Our primary ACS 5.4 admin node has died. I have tried to promote secondary admin node to primary role but it gives me the following message whenever I try to login:&lt;/P&gt;
&lt;P&gt;&lt;B&gt;You are required to change your password due to inactivity in your account. &lt;BR /&gt;Please login to primary to change your password.&lt;/B&gt;&lt;/P&gt;
&lt;P&gt;How do I do this, if Primary node is dead?&lt;/P&gt;
&lt;P&gt;I tried to reset password using CLI, but no luck, get pretty much the same warning:&lt;/P&gt;
&lt;P style="padding-left: 30px;"&gt;ACS02/admin# acs reset-password&lt;BR /&gt;This command resets the 'ACSAdmin' password to its original value.&lt;BR /&gt;Are you sure you want to continue?&amp;nbsp; (yes/no) yes&lt;BR /&gt;Administrator password can be reset only on a PRIMARY instance.&lt;/P&gt;
&lt;P&gt;Due to some fault, I cannot login to it using my AD credentials (could be an issue with AD-ACS integration on this node). Luckily, we have migrated 95% of our infrastructure to TACACS service on ISE 2.1... but there are still devices managed by ACS. So, I am a bit desperate. Go via full recover of Admin node? Re-deploy, recover from backup? Ohhhhhhhh. It is also a physical appliance, which means I have to go to DC to be able to do this.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Has anyone experienced something similar in the past? Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 07:48:30 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/reset-acsadmin-s-password-using-secondary-admin-node-when-pan-is/m-p/3016361#M25939</guid>
      <dc:creator>Tymofii Dmytrenko</dc:creator>
      <dc:date>2019-03-11T07:48:30Z</dc:date>
    </item>
    <item>
      <title>Hi Tymoffi,</title>
      <link>https://community.cisco.com/t5/network-access-control/reset-acsadmin-s-password-using-secondary-admin-node-when-pan-is/m-p/3016362#M25940</link>
      <description>&lt;P&gt;Hi Tymoffi,&lt;/P&gt;
&lt;P&gt;Here is an easy way for this issue:&lt;BR /&gt;&lt;BR /&gt;1-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Install the new ACS VM and make it ready.&lt;BR /&gt;&lt;BR /&gt;2-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Install root patch on both the new ACS and the old secondary ACS.&lt;BR /&gt;&lt;BR /&gt;3-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Get in to the root and browse to the folder /opt/CSCOacs/db:&lt;BR /&gt;&lt;BR /&gt;[root@Training-ACS1 db]# pwd&lt;BR /&gt;/opt/CSCOacs/db&lt;BR /&gt;&lt;BR /&gt;&lt;BR /&gt;4-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; In this folder there are 4 files:&lt;BR /&gt;&lt;BR /&gt;·&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Acs.db&lt;BR /&gt;&lt;BR /&gt;·&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; acs*.log&lt;BR /&gt;&lt;BR /&gt;·&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; dbkey.cfg&lt;BR /&gt;&lt;BR /&gt;·&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; dbcred.cal&lt;BR /&gt;&lt;BR /&gt;5-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; On the new ACS take a backup (copy) of these 4 files to somewhere.&lt;BR /&gt;&lt;BR /&gt;6-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Stop services in new ACS&lt;BR /&gt;&lt;BR /&gt;7-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Copy these files from Secondary ACS to new ACS&lt;BR /&gt;&lt;BR /&gt;8-&amp;nbsp;&amp;nbsp;&amp;nbsp;&amp;nbsp; Start services once files are replaced.&lt;/P&gt;
&lt;P&gt;&lt;/P&gt;
&lt;P&gt;Regards,&lt;/P&gt;
&lt;P&gt;Poonam Garg&lt;/P&gt;</description>
      <pubDate>Mon, 26 Jun 2017 02:26:54 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/reset-acsadmin-s-password-using-secondary-admin-node-when-pan-is/m-p/3016362#M25940</guid>
      <dc:creator>poongarg</dc:creator>
      <dc:date>2017-06-26T02:26:54Z</dc:date>
    </item>
  </channel>
</rss>

