cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
282
Views
0
Helpful
1
Replies

PIX -- Forgot "route inside" to new TACACS servers

jeffrey.wong
Level 1
Level 1

Tacacs servers moved to a new subnet. Changed the AAA and telnet statements on the PIX to point towards and allow the new servers.

Egg on my face, when I couldn't log into the PIX. Checked syslog and saw that there was no route configured to the new subnet. Doh!!

I realized that a 'route inside' statement was missing. I attached console cable to the PIX. Console access requested Tacacs credentials.

Need assistance on how to add the "route inside" statement without bringing down my firewall. Firewall is also in failover configuration.

Doh!!!

1 Reply 1

Collin Clark
VIP Alumni
VIP Alumni

I assume you don't have LOCAL as a backup? You can either move the AAA server back to the IP for a minute so you can login. Otherwise you'll have to perform a password recovery on it.

Hope that helps.

Review Cisco Networking products for a $25 gift card