Just to clarify the situation: are you describing a situation where the router or switch is configured to use Cisco Secure (ACS) for authentication and has "local" configured as an alternative/backup method and you want to enforce that the local passwords get changed periodically? Since local is used, by definition, when the router or switch is not communicating with ACS then I do not see how ACS could require that the passwords be changed.
If I have misunderstood something in your request then please clarify.
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...