Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,I am migrating from ACS/TACACS+ deployment, to ISE/RADIUS deployment.I am able to get the switches to roger up with ISE/RADIUS deployment but I am unable to move into Priv EXEC mode unless I am consoled in. When I try to SSH with IP address, I get...
Hi crew ...!
I have just received Secure Web Appliance s196 to configure and install to turn up new proxy servers. I do not have experience with proxy servers but I am a network guy. I am trying to place the device between our border 5525x ASA router...
Hi,I received help from @Rob Ingram yday regarding ASDM upgrade. Which was a tremendous success, thank you ...!However, today, after I did all that, I had to revert back to a previous ASDM version to work with certain computers on out network. Now I...
Hi, I have upgraded to ASA9-14-4-24-smp-k8 and it was successful.I also have to upgrade the asdm module, I have a asdm-7202 and asdm-openjre-7202.Question, do I need the openjre file ...? if so, do I need to point it someone or just drop it in flash:...
Hi,I am charged with replacing our ASA 5525 with a Secure Firewall 3100. the current ASA is bloated with a lot of dated configuration. However I have managed to consolidate the NAT rules but there are still a lot. How do I copy/paste the NAT from ASA...
Solved*Thank you ALL ...!after having this config on the switch...aaa new-modelaaa session-id common!aaa authentication login default group ISE local enable!aaa authorization exec default group ISE if-authenticatedaaa authorization exec ISE localaaa ...
@PSM I removed "privilege level 1" from "line vty 0 1" - had the same result, when I try to enable to exec mode, it only allows me to use the pre-configured enable password on the switch, and not the pre-configured password within ISE set for each in...
@PSM I have tried the lines you recommended, it still only allows me to login with the configured enable password on the switch and not the pre-configured enable password in ISE, see photo...
@PSM I tried TACACS+ but could not figure it out, it was much easier for me to get up and running on RADIUS. But if you can help me setup TACACS+ properly, I would love to do that instead.This is what I have on my vty line 0 1, should i remove the bo...
@Flavio Miranda I added the suggested line and now I getaaa authentication enable default group ISE enableinstead of "wrong/bad password"Glad I didn't "wr" or else I would have to back door the switch to recover password