cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
3894
Views
0
Helpful
5
Replies

Unable to remove an admin user from ISE

aamir.aleem
Level 1
Level 1

Hello Community,

 

I am an administrator on the Cisco ISE 2.3.0298 version with super admin privileges.

 

I am unable to remove another super admin account. Whenever i hover the cursor over the delete option, it shows me a "NOT ALLOWED" symbol. Also, i am unable to reduce its privilege as well.

 

I AM ABLE to remove the other super admin and lower privilege accounts.

 

All i can say is that the account belongs to a super admin who  i inherited the ISE from.

 

Any indications on what could be causing this issue would be appreciated.

 

 

 

Thanks

 

Aamir

1 Accepted Solution

Accepted Solutions

Dinesh Moudgil
Cisco Employee
Cisco Employee

Hi Aamir,

I did some testing. It appears that you would not be able to delete the admin user under these conditions:

1. If the default admin named "admin" is renamed and you are trying to delete this admin user (whether enabled or disabled).
2. If you are logged in as an admin with super admin privileges and trying to delete the same admin user.

From the snippet, it appears that default admin is renamed.

Regards,
Dinesh Moudgil

P.S. Please rate helpful posts.

Cisco Network Security Channel - https://www.youtube.com/c/CiscoNetSec/

View solution in original post

5 Replies 5

Dinesh Moudgil
Cisco Employee
Cisco Employee

Hi Aamir,

I did some testing. It appears that you would not be able to delete the admin user under these conditions:

1. If the default admin named "admin" is renamed and you are trying to delete this admin user (whether enabled or disabled).
2. If you are logged in as an admin with super admin privileges and trying to delete the same admin user.

From the snippet, it appears that default admin is renamed.

Regards,
Dinesh Moudgil

P.S. Please rate helpful posts.

Cisco Network Security Channel - https://www.youtube.com/c/CiscoNetSec/

Hi Dinesh,

 

Appreciate your testing and reply.

 

My apologies, i did not notice i had captured both my screens in the output i had attached.

 

The default admin account is still present as one of the admin users. Please see attached.

 

 

Regards

 

Aamir

 

Hi Aamir,

From my testing, I didn't observe any similar issue.

Is the admin which is to be deleted authenticated locally or via AD and how about the admin user you are logged in as (is that locally authenticated or via AD).

Regards,
Dinesh Moudgil
Cisco Network Security Channel - https://www.youtube.com/c/CiscoNetSec/

Hi Dinesh,

 

My account and the one which needs to be deleted are locally authenticated.

 

Further, just want to make sure, i am using version 2.3.0298.

 

 

 

Thanks

 

Aamir Aleem

 

Hi Aamir,

This seems to be quite unusual and appears that this might need to be deleted from root with TAC assistance.

Regards,
Dinesh Moudgil
Cisco Network Security Channel - https://www.youtube.com/c/CiscoNetSec/