cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
921
Views
0
Helpful
2
Replies

ACS SE 4.2: Password Expiry/Change over SSH

Roble Mumin
Level 3
Level 3

I am having a hard time to get a "simple" password change working.

What i am trying to achieve:

Create Account in ACS with username and Password. Group Settings are "change Password on first login".

The first login with Telnet works and prompts for a password change. But who is willing to use Telnet these days?

Same test with SSH first login -> Access Denied.

The result is that ACS reports the user as "Expired".

Is this a Layer8 configuration Problem, a bug in ACS or IOS or is it simply not possible?

I am currently testing on WS-C4948 running 12.2(25)EWA11.

Thanks for reading

Roble

1 Accepted Solution

Accepted Solutions

Jagdeep Gambhir
Level 10
Level 10

For TACACS+ with SSH password aging, one-time password change etc are supported by

CSCin91851. The fix is integrated in version 12.4(10.01)T.

http://www.cisco.com/cgi-bin/Support/Bugtool/onebug.pl?bugid=CSCin91851&Submit=Search

Regards,

~JG

Do rate helpful posts

View solution in original post

2 Replies 2

Jagdeep Gambhir
Level 10
Level 10

For TACACS+ with SSH password aging, one-time password change etc are supported by

CSCin91851. The fix is integrated in version 12.4(10.01)T.

http://www.cisco.com/cgi-bin/Support/Bugtool/onebug.pl?bugid=CSCin91851&Submit=Search

Regards,

~JG

Do rate helpful posts

Hey JG,

thanks for the info. A bug makes sense as this problem was kind of strange.

Roble