cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
456
Views
0
Helpful
4
Replies

AAA enable authentication on ASA 5500

ddavenport-dcc
Level 1
Level 1

Hi

I'm hoping I've missed something basic here. I have an ASA5520 (V7.0(7)) I have enabled (I think) enable authentication with the following command:

aaa authentication enable console tacacs LOCAL

I can authentication to CLI ok with my ACS username/password but when I go to privilege exec mode using enable command I am prompted for a password rather that username/password. No matter what I enter I get access denied. I can login using the login command and authenticate via the local database so I am not locked out but I was wondering what I am doing wrong. Probably something simple but any help would be appreciated - Thanks

4 Replies 4

Jagdeep Gambhir
Level 10
Level 10

It seems that on acs you have not selected enable password.

ACS--->User setup---->Tacacs+ enable password. Use any option as per your need.

And try to login now.

Regards,

~JG

Hi

Thanks for your reply. I have already set the enable password option is ACS.

Regards

Dave

Does this have to be set on a per user basis or can it be set in the group settings?

On user basis as this option is not there in group settings.

Regards,

~JG

Do rate helpful posts

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: