cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1659
Views
0
Helpful
2
Replies

ACS 5.x " Change Password on Next Login" does not work with SSH Clients

MANSOORQ123
Level 1
Level 1

Dear Team

 

As observed ACS 5.x " Change Password on Next Login" Feature does not work with SSH Clients ( tried with X-sheel, Secure CRT, Putty etc...) , however through telnet session to IOS devices, users can change their password on their next login.

1: on ACS 5.x i create a new user & Set " Change password on NExt Login" option.

2: Logged into the device through Telnet & Password can be changed after i authenticate successfully.

however

the same is not happening when i login to the devices through SSH.

is it because of the fact that SSH is encrypted session ?

Because changing password through a telnet session is not accepted in many fanancial organizations as per PCI Standard.

Any response will be highly appreciated.

Thanks

Ahad

1 Accepted Solution

Accepted Solutions

vaba
Level 1
Level 1

Hi MANSOORRQ123

You need to use 'Keyboard Interactive' as a first "Authentication" method

Putty 0.62 uses 'Keyboard Interactive' authentication as default.

Here is information about Secure CRT 6.7.2:

Move 'Keyboard Interactive' to the top in the "Authentication" sub-category of SecureCRT's 'Options / Session Options / Connection / SSH2' category

View solution in original post

2 Replies 2

vaba
Level 1
Level 1

Hi MANSOORRQ123

You need to use 'Keyboard Interactive' as a first "Authentication" method

Putty 0.62 uses 'Keyboard Interactive' authentication as default.

Here is information about Secure CRT 6.7.2:

Move 'Keyboard Interactive' to the top in the "Authentication" sub-category of SecureCRT's 'Options / Session Options / Connection / SSH2' category

Hi VABA

Thanks a lot for your help.

Kind Regards

Ahad

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: