04-12-2022 03:11 PM
After Password Recover of Nexus 5672UP, I was able to login to Nexus switch via console cable, However I am seeing below error. I am unable to save config or go to terminal mode or do show command. Any idea ?
NEX01# config terminal
Error: AAA authorization failed AAA_AUTHOR_STATUS_METHOD=17(0x11)
NEX01# copy running-config startup-config
Error: AAA authorization failed AAA_AUTHOR_STATUS_METHOD=17(0x11)
Is there any way to completely factory reset and erase nvram ?
Solved! Go to Solution.
04-18-2022 06:17 AM
As per Cisco TAC, due to this issue we cannot recover password, which defeats the purpose of password recovery.
The only option is to factory reset by below procedure.
04-12-2022 03:35 PM
looks like this is TACACS Authorise issue
can you post show version and show run | in tac
04-13-2022 06:37 AM
I think show run | in tac also shows same output of authorization.
Any command I enter shows same authorization issue. No command works.
show running-config, show inventory or any command doesn't work.
This switch is not connected to anywhere currently. Why would Password Reset won't bypass this authorization ? Is there a way to completely factory reset ? I don't need any config on this switch. I just need to get into this switch to be utilized for project.
04-15-2022 02:35 PM
You might get the assistance you need by asking this question in the Nexus Community - it's not really a NAC question.
Cisco Community > Technology and Support > Data Center and Cloud > Nexus Dashboard
04-15-2022 03:03 PM
This switch appears to be configured to use TACACS for command-based authorization of each and every command on the CLI and you do not appear to be authorized to run these commands from the console.
Try logging in via SSH as you normally would and hopefully this will work properly.
Talk to your peers or manager or security team in your organization about your privilege level and whether or not you should be allowed to run these commands.
If you should be able to do this, they may need to change your authorized privilege level or add commands to your privilege level so you may run them.
04-18-2022 06:17 AM
As per Cisco TAC, due to this issue we cannot recover password, which defeats the purpose of password recovery.
The only option is to factory reset by below procedure.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide