Is this per the System Administration > Local User Account & Password Settings, w/ password reset rules set there? Specific account/admin account? Or a custom defined account?
From what you describe - sounds like would fall in-line with standard procedures if admin account related...
If you lock the admin account, you can only unlock it by logging in as the admin through a serial communications connection to the serial console port. The admin user can always access the appliance using the serial console port, even when the admin account is locked.
I hope this helps!
(*If you have received the answer to your original question, and found this helpful/correct - please mark the question as answered, and be sure to leave a rating to reflect!)
I have custom password rules set...so all local users - including admin - must change password in 30 days...so when the password is expired it's supposed to change the password at the GUI login...Then I follow the procedure...enter userid...enter old password...enter the new password...confirm the new password and it returns to the login page again (no error is shown...). But when I try to login with new password it doesn't work, it asks me to change the old password again.
Guess the procedure to change password at GUI is not working properly.
I was not able to reproduce this on 7.6.3-019 and FF version 30. I created a test user with password expiration of 1 day. After one day I was required to change the password which worked perfectly fine and I was also able to login with the new password.
I'd recommend to open a case with TAC so that that we can continue looking into the issue. Provide the URL of this post when you open the case.
DocumentationCode download linksGoalRequirementLimitationsSupported ISR
and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationConfigure one of the connectivity
options to access the Cisco IMC from the n...
Firepower Threat Defense (NGFWv) on UCS E-series - Transparent Mode in
HA DocumentationCode download linksGoalRequirementLimitationsSupported
ISR and UCS-E ModelSupported ISRG2 and UCS-E Blades:Supported ISR4K and
UCS-E Blades:Step by Step ConfigurationCo...
Question I am currently unable to specify "crypto keyring" command when
configuring VPN connection on my cisco 2901 router. The following
licenses have been activated on my router :