<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic If I issue the commandno aaa in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/aaa-authentication-on-asa/m-p/2567382#M202483</link>
    <description>&lt;P&gt;If I issue the command&lt;/P&gt;&lt;P&gt;no aaa authentication ssh console TACACS+&lt;/P&gt;&lt;P&gt;while ssh'd into the device, will it lock me out?&lt;/P&gt;</description>
    <pubDate>Fri, 12 Dec 2014 16:54:15 GMT</pubDate>
    <dc:creator>Colin Higgins</dc:creator>
    <dc:date>2014-12-12T16:54:15Z</dc:date>
    <item>
      <title>AAA authentication on ASA</title>
      <link>https://community.cisco.com/t5/network-security/aaa-authentication-on-asa/m-p/2567378#M202479</link>
      <description>&lt;P&gt;I am trying to configure an ASA 5545X running 8.3+ to use a tacacs+ server for authentication, but to failover to local authentication if the tacacs+ server is not available.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;when I use the command aaa authentication ssh console TACACS+ LOCAL&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;it tells me "range already exists" and it doesn't take&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;What is the command for this? Can't seem to find it in documentation&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 05:12:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/aaa-authentication-on-asa/m-p/2567378#M202479</guid>
      <dc:creator>Colin Higgins</dc:creator>
      <dc:date>2019-03-12T05:12:37Z</dc:date>
    </item>
    <item>
      <title>Hi,If you are seeing this</title>
      <link>https://community.cisco.com/t5/network-security/aaa-authentication-on-asa/m-p/2567379#M202480</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;If you are seeing this prompt , it means that the configuration is already there.&lt;/P&gt;&lt;P&gt;Can you check using this command from the Privilege mode on ASA:-&lt;/P&gt;&lt;P&gt;"show run aaa" and you should see the command in the configuration.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Thu, 11 Dec 2014 10:29:31 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/aaa-authentication-on-asa/m-p/2567379#M202480</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2014-12-11T10:29:31Z</dc:date>
    </item>
    <item>
      <title>I type the command aaa</title>
      <link>https://community.cisco.com/t5/network-security/aaa-authentication-on-asa/m-p/2567380#M202481</link>
      <description>&lt;P&gt;I type the command&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;aaa authentication ssh console TACACS+ LOCAL&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;and it tells me "range already exists"&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;If I do a show run aaa I get&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;aaa authentication ssh console TACACS+&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;no LOCAL.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;I should point out that this is an ASA blade for a 6500 switch running 8.5(1)&lt;/P&gt;</description>
      <pubDate>Thu, 11 Dec 2014 18:44:16 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/aaa-authentication-on-asa/m-p/2567380#M202481</guid>
      <dc:creator>Colin Higgins</dc:creator>
      <dc:date>2014-12-11T18:44:16Z</dc:date>
    </item>
    <item>
      <title>Hi,Okay , just remove this</title>
      <link>https://community.cisco.com/t5/network-security/aaa-authentication-on-asa/m-p/2567381#M202482</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;Okay , just remove this command:-&lt;/P&gt;&lt;P&gt;no aaa authentication ssh console TACACS+&lt;/P&gt;&lt;P&gt;and then add the required one:-&lt;/P&gt;&lt;P&gt;aaa authentication ssh console TACACS+ LOCAL&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Fri, 12 Dec 2014 07:28:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/aaa-authentication-on-asa/m-p/2567381#M202482</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2014-12-12T07:28:46Z</dc:date>
    </item>
    <item>
      <title>If I issue the commandno aaa</title>
      <link>https://community.cisco.com/t5/network-security/aaa-authentication-on-asa/m-p/2567382#M202483</link>
      <description>&lt;P&gt;If I issue the command&lt;/P&gt;&lt;P&gt;no aaa authentication ssh console TACACS+&lt;/P&gt;&lt;P&gt;while ssh'd into the device, will it lock me out?&lt;/P&gt;</description>
      <pubDate>Fri, 12 Dec 2014 16:54:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/aaa-authentication-on-asa/m-p/2567382#M202483</guid>
      <dc:creator>Colin Higgins</dc:creator>
      <dc:date>2014-12-12T16:54:15Z</dc:date>
    </item>
    <item>
      <title>Hi,I don't think it should.</title>
      <link>https://community.cisco.com/t5/network-security/aaa-authentication-on-asa/m-p/2567383#M202484</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;I don't think it should. As the SSH connection is already established on the ASA device.&lt;/P&gt;&lt;P&gt;Still , you can try to add the other command using some other management access like telnet or ASDM if possible.&lt;/P&gt;&lt;P&gt;Thanks and Regards,&lt;/P&gt;&lt;P&gt;Vibhor Amrodia&lt;/P&gt;</description>
      <pubDate>Sat, 13 Dec 2014 12:37:26 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/aaa-authentication-on-asa/m-p/2567383#M202484</guid>
      <dc:creator>Vibhor Amrodia</dc:creator>
      <dc:date>2014-12-13T12:37:26Z</dc:date>
    </item>
  </channel>
</rss>

