cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
263
Views
0
Helpful
5
Replies

AAA New-Style to Legacy Mode

Paul M Dycus
Level 1
Level 1

I have several switches in within my environment operating in new-style. Is there any way of reverting to legacy mode without factory defaulting the device?

Examples:

S1#authentication display config-mode
Current configuration mode is legacy

S2# authentication display config-mode
Current configuration mode is new-style

1 Accepted Solution

Accepted Solutions

Jens Albrecht
Level 7
Level 7

Hello @Paul M Dycus,

No, you cannot revert from "new-style" (IBNS 2.0) to "legacy" mode on Cisco switches without factory defaulting the device.

You need to backup the config, do a factory reset and then reconfigure them. Unfortunately there is no other way.

HTH!

View solution in original post

5 Replies 5

Jens Albrecht
Level 7
Level 7

Hello @Paul M Dycus,

No, you cannot revert from "new-style" (IBNS 2.0) to "legacy" mode on Cisco switches without factory defaulting the device.

You need to backup the config, do a factory reset and then reconfigure them. Unfortunately there is no other way.

HTH!

Some additional note to make this clear:

If you switch from legacy to new-style you can revert back to legacy as long as you do not modify and save the config.

Please note that while you can revert to legacy style
configuration at any time unless you have explicitly
entered new-style configuration, the following caveats
should be carefully read and understood.

(1) If you save the config in this mode, it will be written
    to NVRAM in NEW-style config, and if you subsequently
    reload the router without reverting to legacy config and
    saving that, you will no longer be able to revert.

 Source: Command Reference, Cisco IOS XE Amsterdam 17.2.x

What is the reason you want to go back? IBNS2 is tremendously more complex than IBNS1, but it is also the present and the future of access control on Cisco Switches. The best thing is to get used to it.

You can switch back to legacy mode by using the authentication display legacy command.

Try this command, if not work then sorry you need to factory reset. 

MHM

Why do you want to do this? IBNS 2.0 is FAR superior to IBNS 1.0

https://www.ise-support.com/cisco-ise-nad-configuration-templates/