cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1771
Views
0
Helpful
2
Replies

ACS 5.x " Change Password on Next Login" does not work with SSH Clients

MANSOORQ123
Level 1
Level 1

Dear Team

 

As observed ACS 5.x " Change Password on Next Login" Feature does not work with SSH Clients ( tried with X-sheel, Secure CRT, Putty etc...) , however through telnet session to IOS devices, users can change their password on their next login.

1: on ACS 5.x i create a new user & Set " Change password on NExt Login" option.

2: Logged into the device through Telnet & Password can be changed after i authenticate successfully.

however

the same is not happening when i login to the devices through SSH.

is it because of the fact that SSH is encrypted session ?

Because changing password through a telnet session is not accepted in many fanancial organizations as per PCI Standard.

Any response will be highly appreciated.

Thanks

Ahad

1 Accepted Solution

Accepted Solutions

vaba
Level 1
Level 1

Hi MANSOORRQ123

You need to use 'Keyboard Interactive' as a first "Authentication" method

Putty 0.62 uses 'Keyboard Interactive' authentication as default.

Here is information about Secure CRT 6.7.2:

Move 'Keyboard Interactive' to the top in the "Authentication" sub-category of SecureCRT's 'Options / Session Options / Connection / SSH2' category

View solution in original post

2 Replies 2

vaba
Level 1
Level 1

Hi MANSOORRQ123

You need to use 'Keyboard Interactive' as a first "Authentication" method

Putty 0.62 uses 'Keyboard Interactive' authentication as default.

Here is information about Secure CRT 6.7.2:

Move 'Keyboard Interactive' to the top in the "Authentication" sub-category of SecureCRT's 'Options / Session Options / Connection / SSH2' category

Hi VABA

Thanks a lot for your help.

Kind Regards

Ahad