Local User Password Reset

Unanswered Question
Oct 13th, 2009

I'm using an ASA 5510 with local user authentication for VPN access. Is there a method that I can use to prompt for user password changes after a given time? If not with local accounts, what other authentication methods may be available to prompt users for password changes and provide them with that capability?

My clients are using AnyConnect 2.3.2016 and the ASA is v 8.0(4)



  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
kmkrause2 Tue, 10/13/2009 - 13:14

Thanks for the response. I kind of thought that was going to be the case. Do you know of any security concerns that would lean a person one way or the other regarding radius vs ldap?

Thanks again

Collin Clark Tue, 10/13/2009 - 13:25

I would lean towards TACACs if you can. It encrypts the AAA packets whereas RADIUS creates a hash of them.


This Discussion