<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Hi Karthik, in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/local-user-database-for-aaa-tacacs/m-p/2498138#M237532</link>
    <description>Hi Karthik,

Thanks for the link but it gave me more questions rather than answers.

I didn't find if the local user is for ASDM access and if AAA commands is applied to the 'admin' context only and would be able to manage other virtual contexts that has no AAA config.</description>
    <pubDate>Sun, 15 Jun 2014 06:03:18 GMT</pubDate>
    <dc:creator>johnlloyd_13</dc:creator>
    <dc:date>2014-06-15T06:03:18Z</dc:date>
    <item>
      <title>Local User Database for AAA/TACACS+</title>
      <link>https://community.cisco.com/t5/network-security/local-user-database-for-aaa-tacacs/m-p/2498136#M237530</link>
      <description>&lt;P&gt;hi all,&lt;/P&gt;&lt;P&gt;i configured our new ASA 5525-X for AAA/TACACS+ but got locked out so i have to reboot.&lt;/P&gt;&lt;P&gt;when i applied the AAA config, it showed an error saying 'enable_15' in not in LOCAL database.&lt;/P&gt;&lt;P&gt;it this the fallback method or should it be the telnet/enable passwords that should be used?&lt;/P&gt;&lt;P&gt;is this for ASDM purpose?&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;ASA02/admin# sh run&lt;BR /&gt;Fallback authorization. Username 'enable_15' not in LOCAL database&lt;/P&gt;</description>
      <pubDate>Tue, 12 Mar 2019 04:20:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/local-user-database-for-aaa-tacacs/m-p/2498136#M237530</guid>
      <dc:creator>johnlloyd_13</dc:creator>
      <dc:date>2019-03-12T04:20:00Z</dc:date>
    </item>
    <item>
      <title>Hi John, This is due to the</title>
      <link>https://community.cisco.com/t5/network-security/local-user-database-for-aaa-tacacs/m-p/2498137#M237531</link>
      <description>&lt;P&gt;Hi John,&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;This is due to the authorization / aaa setting in a multi context firewall. You need to tweak it carefully to avoid confusion. You can follow the below mentioned document to understand it better.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;http://www.cisco.com/c/en/us/td/docs/security/asa/asa80/configuration/guide/conf_gd/mgaccess.html&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope this helps.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Karthik&lt;/P&gt;</description>
      <pubDate>Sun, 15 Jun 2014 05:04:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/local-user-database-for-aaa-tacacs/m-p/2498137#M237531</guid>
      <dc:creator>nkarthikeyan</dc:creator>
      <dc:date>2014-06-15T05:04:48Z</dc:date>
    </item>
    <item>
      <title>Hi Karthik,</title>
      <link>https://community.cisco.com/t5/network-security/local-user-database-for-aaa-tacacs/m-p/2498138#M237532</link>
      <description>Hi Karthik,

Thanks for the link but it gave me more questions rather than answers.

I didn't find if the local user is for ASDM access and if AAA commands is applied to the 'admin' context only and would be able to manage other virtual contexts that has no AAA config.</description>
      <pubDate>Sun, 15 Jun 2014 06:03:18 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/local-user-database-for-aaa-tacacs/m-p/2498138#M237532</guid>
      <dc:creator>johnlloyd_13</dc:creator>
      <dc:date>2014-06-15T06:03:18Z</dc:date>
    </item>
    <item>
      <title>Hi John,On AAA settings you</title>
      <link>https://community.cisco.com/t5/network-security/local-user-database-for-aaa-tacacs/m-p/2498139#M237533</link>
      <description>&lt;P&gt;Hi John,&lt;/P&gt;&lt;P&gt;On AAA settings you have mentioned Tacacs and LOCAL as the fall back option.... but have you created with privilege 15. If you have created as such you shouldn't get that error pops.&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;username &amp;lt;name&amp;gt; password [PASSWORD] encrypted privilege 15&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Hope this helps&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Karthik&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sun, 15 Jun 2014 09:06:44 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/local-user-database-for-aaa-tacacs/m-p/2498139#M237533</guid>
      <dc:creator>nkarthikeyan</dc:creator>
      <dc:date>2014-06-15T09:06:44Z</dc:date>
    </item>
    <item>
      <title>hi karthik,i didn't configure</title>
      <link>https://community.cisco.com/t5/network-security/local-user-database-for-aaa-tacacs/m-p/2498140#M237534</link>
      <description>&lt;P&gt;hi karthik,&lt;/P&gt;&lt;P&gt;i didn't configure the local user that's why i got locked out.&lt;/P&gt;&lt;P&gt;i thought that this was initially for ASDM that's why i left it out.&lt;/P&gt;</description>
      <pubDate>Mon, 16 Jun 2014 07:55:11 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/local-user-database-for-aaa-tacacs/m-p/2498140#M237534</guid>
      <dc:creator>johnlloyd_13</dc:creator>
      <dc:date>2014-06-16T07:55:11Z</dc:date>
    </item>
    <item>
      <title>Hi John,Good to know that</title>
      <link>https://community.cisco.com/t5/network-security/local-user-database-for-aaa-tacacs/m-p/2498141#M237535</link>
      <description>&lt;P&gt;Hi John,&lt;/P&gt;&lt;P&gt;Good to know that your issue is solved. Thanks!!!&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;Regards&lt;/P&gt;&lt;P&gt;Karthik&lt;/P&gt;</description>
      <pubDate>Mon, 16 Jun 2014 08:32:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/local-user-database-for-aaa-tacacs/m-p/2498141#M237535</guid>
      <dc:creator>nkarthikeyan</dc:creator>
      <dc:date>2014-06-16T08:32:17Z</dc:date>
    </item>
  </channel>
</rss>

