<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ASA- aaa authentication enable console LOCAL in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/asa-aaa-authentication-enable-console-local/m-p/3336039#M969740</link>
    <description>&lt;P&gt;I want configure ASA, so it requires local username and password for enable mode.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Command:&lt;/STRONG&gt; aaa authentication enable console LOCAL&lt;/P&gt;
&lt;P&gt;When I configure this command, I am not able to login even though the following configuration already exists:&lt;/P&gt;
&lt;P&gt;username xxxxxx password xxxxxxxxxxxxxxxxxxx encrypted privilege 15&lt;/P&gt;
&lt;P&gt;enable password xxxxxxxxxxxxxxxxxx encrypted&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;when I configure the following it works:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;username xxxxxx password xxxxxxxxxxxxxxxxxxx&lt;/P&gt;
&lt;P&gt;aaa authentication enable console LOCAL&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Question:&lt;/P&gt;
&lt;P&gt;Why “username xxxxxx password xxxxxxxxxxxxxxxxxxx encrypted privilege 15” username and password is not used, when configure &lt;STRONG&gt;aaa authentication enable console LOCAL?&lt;/STRONG&gt;&lt;/P&gt;</description>
    <pubDate>Fri, 21 Feb 2020 15:23:59 GMT</pubDate>
    <dc:creator>Praveen Kumar</dc:creator>
    <dc:date>2020-02-21T15:23:59Z</dc:date>
    <item>
      <title>ASA- aaa authentication enable console LOCAL</title>
      <link>https://community.cisco.com/t5/network-security/asa-aaa-authentication-enable-console-local/m-p/3336039#M969740</link>
      <description>&lt;P&gt;I want configure ASA, so it requires local username and password for enable mode.&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;Command:&lt;/STRONG&gt; aaa authentication enable console LOCAL&lt;/P&gt;
&lt;P&gt;When I configure this command, I am not able to login even though the following configuration already exists:&lt;/P&gt;
&lt;P&gt;username xxxxxx password xxxxxxxxxxxxxxxxxxx encrypted privilege 15&lt;/P&gt;
&lt;P&gt;enable password xxxxxxxxxxxxxxxxxx encrypted&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;STRONG&gt;when I configure the following it works:&lt;/STRONG&gt;&lt;/P&gt;
&lt;P&gt;username xxxxxx password xxxxxxxxxxxxxxxxxxx&lt;/P&gt;
&lt;P&gt;aaa authentication enable console LOCAL&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Question:&lt;/P&gt;
&lt;P&gt;Why “username xxxxxx password xxxxxxxxxxxxxxxxxxx encrypted privilege 15” username and password is not used, when configure &lt;STRONG&gt;aaa authentication enable console LOCAL?&lt;/STRONG&gt;&lt;/P&gt;</description>
      <pubDate>Fri, 21 Feb 2020 15:23:59 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-aaa-authentication-enable-console-local/m-p/3336039#M969740</guid>
      <dc:creator>Praveen Kumar</dc:creator>
      <dc:date>2020-02-21T15:23:59Z</dc:date>
    </item>
    <item>
      <title>Re: ASA- aaa authentication enable console LOCAL</title>
      <link>https://community.cisco.com/t5/network-security/asa-aaa-authentication-enable-console-local/m-p/3336374#M969741</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;How are you logging on to the firewall initially, via console or ssh\telnet. What asa software version are you using? Are you using aaa authorization?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;Thanks&lt;/P&gt;
&lt;P&gt;John&lt;/P&gt;</description>
      <pubDate>Fri, 23 Feb 2018 03:01:00 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-aaa-authentication-enable-console-local/m-p/3336374#M969741</guid>
      <dc:creator>johnd2310</dc:creator>
      <dc:date>2018-02-23T03:01:00Z</dc:date>
    </item>
    <item>
      <title>Re: ASA- aaa authentication enable console LOCAL</title>
      <link>https://community.cisco.com/t5/network-security/asa-aaa-authentication-enable-console-local/m-p/3336972#M969748</link>
      <description>&lt;P&gt;1. SSH&lt;/P&gt;
&lt;P&gt;2. Software Version 9.6(4)3&amp;nbsp;&lt;/P&gt;
&lt;P&gt;3. no authorization&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Fri, 23 Feb 2018 22:24:17 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-aaa-authentication-enable-console-local/m-p/3336972#M969748</guid>
      <dc:creator>Praveen Kumar</dc:creator>
      <dc:date>2018-02-23T22:24:17Z</dc:date>
    </item>
    <item>
      <title>Re: ASA- aaa authentication enable console LOCAL</title>
      <link>https://community.cisco.com/t5/network-security/asa-aaa-authentication-enable-console-local/m-p/3337006#M969751</link>
      <description>&lt;BLOCKQUOTE&gt;&lt;HR /&gt;&lt;a href="https://community.cisco.com/t5/user/viewprofilepage/user-id/321438"&gt;@Praveen Kumar&lt;/a&gt; wrote:&lt;BR /&gt;
&lt;P&gt;1. SSH&lt;/P&gt;
&lt;P&gt;2. Software Version 9.6(4)3&amp;nbsp;&lt;/P&gt;
&lt;P&gt;3. no authorization&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;HR /&gt;&lt;/BLOCKQUOTE&gt;
&lt;P&gt;If you're using ssh, you'll need to do a couple of things. &lt;BR /&gt;1. Create a user. (seems like you have this covered already).&lt;/P&gt;
&lt;P&gt;2. Enabled ssh for local authentication:&lt;/P&gt;
&lt;PRE&gt;aaa authentication ssh console LOCAL&lt;/PRE&gt;
&lt;P&gt;&lt;BR /&gt;3. generate the crypto keys for ssh:&lt;/P&gt;
&lt;PRE&gt;crypto key generate rsa modulus &amp;lt;modulus number&amp;gt;&lt;/PRE&gt;
&lt;P&gt;4. allow management access via ssh from a certain interface and network:&lt;/P&gt;
&lt;PRE&gt;ssh 192.168.1.0 255.255.255.0 inside&lt;/PRE&gt;
&lt;P&gt;5. open your terminal emulation software and try to ssh to an ASA interface ip (the one specified in step 4). You should now be able to login.&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Sat, 24 Feb 2018 00:12:33 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-aaa-authentication-enable-console-local/m-p/3337006#M969751</guid>
      <dc:creator>mls577</dc:creator>
      <dc:date>2018-02-24T00:12:33Z</dc:date>
    </item>
    <item>
      <title>Re: ASA- aaa authentication enable console LOCAL</title>
      <link>https://community.cisco.com/t5/network-security/asa-aaa-authentication-enable-console-local/m-p/3340763#M969755</link>
      <description>&lt;P&gt;That is not really my question- my question is:&lt;/P&gt;
&lt;P&gt;If we already have this (see below) user account, why doesn't it work when we configure "aaa authentication ssh console LOCAL"?&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;username xxxxxx password xxxxxxxxxxxxxxxxxxx encrypted privilege 15&lt;/P&gt;</description>
      <pubDate>Thu, 01 Mar 2018 21:39:28 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/asa-aaa-authentication-enable-console-local/m-p/3340763#M969755</guid>
      <dc:creator>Praveen Kumar</dc:creator>
      <dc:date>2018-03-01T21:39:28Z</dc:date>
    </item>
  </channel>
</rss>

