Restoration of a Cisco ACS Windows 3.3 to a problem of acs 3.3 applicance

Hello

I have now built an ACS appliance and trying to restore the current configuration and the database on the windows machine. When I run the restoration on the GBA unit, it says it restores but does it again an hour later. Then when I reboot the box, I get a connection message invalid admin and need to reset it using the cd.

Everyone comes through this?

How to solve it?

See you soon

KeV

Kevin,

Has he any security set to windows backup, that is to say 'allow all IP addresses' to connect to the Admin user?

If you try from another computer you same message?

~ JG

Tags: Cisco Security

Similar Questions

  • How to restore the password on Cisco ACS 5.4

    Hello!

    Try to restore the Cisco ACS 5.4 password installed on vmware. Where can I get the password recovery DVDs? There is no software in the list on the site.

    TAC may provide to you. You will need to open a folder and the application.

    HTH

  • restore the configuration of the cisco ACS 1121 ver 5.2 to SNS 3425 ver 5.6

    Dear all,

    We currently have Cisco ACS 1121 ver 5.2 in our production, then we will replace it with the new devices using SNS 3425 ver 5.6.

    Please good to want to help someone can tell you how to restore all the old configuration of devices (ACS 1121 ver 5.2) for the new Member States?

    Best regards

    Yudibagam

    Hello! You must upgrade the current device to a min of v5.4 for restoration work and be supported.

    http://www.Cisco.com/c/en/us/TD/docs/net_mgmt/cisco_secure_access_control_system/5-6/release/notes/acs_56_rn.html

    However, if you're going to go through the upgrade problems then I would say that you upgrade all the way to 5.6 just to be sure :)

    I hope this helps!

    Thank you for evaluating useful messages!

  • Does Cisco ACS 1113 v4.2 device work with Windows 2008

    Hello

    I have a wireless currently in production infrastructure. All my Cisco LWAP is managed by Cisco WLC. Authentication is done via RADIUS through my device Cisco ACS 1113 running on version 4.2. The Cisco ACS 1113 device communicates with my Windows 2003 Active Directory. Everything is good now.

    Next month, we plan to update Active Directory from Windows 2003 to Windows 2008? Will be all fine and good, or will it be questions? Please advice kindly.

    I saw another post in this community that the States https://supportforums.cisco.com/thread/1003597?tstart=0. I am now confused. Help, please.

    Kind regards

    RAM

    + 60122918870

    ACS 4.2 does not work with Windows 2008R2.  I had a case of TAC open about this, and basically, they told me that I had to switch to 5.2 ACS.   I've been doing demonstrations there and it authenticates with Windows2008R2 very well.

  • Version of Cisco ACS 5.1.0.44.3 integrate with active directory server from Microsoft windows 2012?

    Version of Cisco ACS 5.1.0.44.3 integrate with active directory Microsoft windows 2012 R2 server?

    Unfortunately, it does not support R2 2012

    5.1 ACS supports all editions of:

    Windows Active Directory (AD) 2000

    Windows AD 2003

    Windows AD 2003 R2

    Windows AD 2008

    Source

    Windows AD 2012 R2 is supported after ACS 5.5 patch 1 and following.

    Source

    Please find below the steps to go from 5.1 to 5.5 hotfix 1:

    STEP FILE COMMAND
    Apply the 5.1 patch 6 5-1-0-44 - 6.tar.gpg ACS patch install repository 5-1-0-44 - 6.tar.gpg ftp_repository_name
    Apply 5.3 ACS_5.3.0.40.tar.gz application upgrade ACS_5.3.0.40.tar.gz ftp_repository_name
    Apply the patch 5.3 8 5-3-0-40 - 8.tar.gpg ACS patch install repository 5-3-0-40 - 8.tar.gpg ftp_repository_name
    Apply the sharp Patch Pointed-PreUpgrade-CSCum04132-5-3-0-40.tar.gpg ACS patch installs Pointed-PreUpgrade -CSCum04132- 5-3-0 - 40.tar.gpg repository ftp_repository_name
    Apply 5.5 ACS_5.5.0.46.tar.gz application upgrade ACS_5.5.0.46.tar.gz ftp_repository_name
    Apply the patch 5.5 1 5-5-0-46 - 1.tar.gpg ACS patch install repository 5-5-0-46 - 1.tar.gpg ftp_repository_name

    Best regards ~ jousset

  • Cisco Security Manager integration with Cisco ACS troubleshooting

    Hi all!

    I have a problem with the integration between Cisco Security Manager and ACS. I've done the integration, but the identity of the user system doesn't have enough privileges. I know what the problem is, but I don't know how I can change the login of the ACS to the local MSC?

    I found a file that specifies the following:

    Q.

    Is there a backend script or command line interface options to change the ACS to local CicsoWorks connection module?

    A.

    To restore the server LMS ACS local user mode mode, stop the CiscoWorks

    demons and run the following script:

    NMSROOT/bin/perl ResetLoginModule.pl

    (for Solaris)

    NMSROOT\bin\perl ResetLoginModule.pl

    (for Windows)

    Then, restart the daemon.

    I did it, but does not work, any idea?

    Hello

    I guess you can try to go through the question on WSC and GBA integration troubleshooting:

    http://www.Cisco.com/en/us/docs/security/security_management/cisco_security_manager/security_manager/3.0/troubleshooting/guide/rbacts.html#wp1043629

    Few things might have gone wrong:

    1 - this command must be run on the server MCS cmd prompt (make sure that you are not on the client computer)

    2 - NMSROOT is the directory were MSC Server is installed. Is usually c:\Progra~1\CSCOpx

    3. you must stop the deamon Manager before performing this action (and restart)

    For example if the directory is the one above to reset the connection locally, you can try the following:

    net stop crmdmgtd---> that stops the daemon Manager (can be done by the services window)

    c:\Progra~1\CSCOpx\bin\perl c:\Progra~1\CSCOpx\bin\ ResetLoginModule.pl---> restores local authentication

    net start crmdmgtd---> restart the Daemon Manager

    Can you maybe try again and let me know how it goes?

    Thank you

  • Cisco ACS 4.2: The most important to back up files?

    Dear Sir

    Can you tell me what are the most important files to back up in the Cisco ACS directory?

    Currently, I am only backup (with Symantec Backup Exec):

    C:\Program Files\CiscoSecure ACS v4.2\CSAuth\System backups

    * But, I would like to know if my server crash, can I restore the entire configuration with the files listed in the directory below? (Users, groups, groups of devices, AD, mapping, users, groups,...)

    * The Cisco ACS there change in the Windows registry?

    * Is it necessary to reinstall the Cisco ACS, if I need to put in an emergency on a new server? I guess Yes, because the installation creates services, etc.

    I ask this question because it takes time to install the patches...

    * Or, can I save all the Cisco ACS directory... On a new server, install the Cisco ACS and restore the backup?

    Thank you very much for giving me your experience about it.

    Kind regards

    You should back up the files that come from ACS backups, i.e.

    System configuration > backup GBA, the location that is specified in this section.

    And the default location is the one that already save for example "C:\Program Files\CiscoSecure ACS v4.2\CSAuth\System backups"

    In case you are required to host ACS on a new server, you would be required to re - install the complete application of the CSA and then simply take the last backup and restore in the newly installed ACS. It will be to restore everything users, group etc. to etc. of the external database mappings.

    When you install ACS on a new server, then make sure that if you run them Services ACS with a service account (this is required for the authentication of the window according to your requirement), you would be required to run new services with this account too, and which may require that go you through the following documentation.

    http://www.Cisco.com/en/us/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2/installation/guide/Windows/postin.html#wp1041202

    Kind regards

    Prem

    Please rate if this can help!

  • Replacement of Cisco ACS Solutions 4.2 engine

    Hello

    Our ACS (Cisco 1113) is dead and it is not cost-effective to replace because it will serve only until the end of this year.

    Is it possible to get the Ganymede software to install on a Windows Server? How can I go on the procurement software as the original documentation is no longer available? The fact that I have a dead unit will be sufficient evidence for a copy of the software? We are currently running v4.1

    Thank you.

    Here's a path to download the Eval of ACS 4.2 windows.

    Cisco.com > downloads Home > Products > Security > access control and

    Policies > policy and access management > Cisco Secure Access Control

    Server for Windows > Cisco Secure ACS for Windows 4.2 > secure access

    Control (ACS) server for Windows - 4.2.0.124 > scroll down

    and you will see a file named

    ACS v4.2.0.124 90-Days Evaluation Software

    EVAL-ACS - 4.2.0.124 - SW.zip

    ACS installation under windows

    http://www.Cisco.com/en/us/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2/installation/guide/Windows/install.html

    Once installed, you can restore the previous backup on windows server.

    Restore from a backup ACS file

    http://www.Cisco.com/en/us/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2.1/User_Guide/SCBasic.html#wp222758

    Jatin kone

    -Does the rate of useful messages-

  • Cisco ACS 1113 appliance v4.1 - integration of RSA Securid v6.1

    The Windows of Cisco ACS version seems to have the ability of integration with RSA Securid its listed in external databases. It can also support the SDI Protocol if you install the agent on the Windows ACS platform. I need to use a Cisco ACS 1113 but RSA Securid does not appear in the section external databases. This mean that I won't be able to use the SDI Protocol only available RADIUS.

    And Yes you are right,

    With ACS, we need to configure using RADIUS, on ACS SE it won't work with SDI.

    Kind regards

    Prem

  • RADIUS does not not on Cisco ACS SE v4.1 (1)

    Hello

    I have a CiscoSecure ACS version 4.1 (1) build 23.

    I can't configure the Cisco ACS for granular control of access router. I have a Netopia Router that is configured to use RADIUS to authenticate remotely for a telnet connection. The router sends the request to access the Cisco ACS SE RADIUS and a sniff on the side of the ACS shows the application of GBA, but I see no response from the ACS. RADIUS authentication to work with a Windows 2003 server.

    I configured an AAA client and a user of the ACS and use the default group. I use IETF RADIUS. Should what attributes I configure. In Windows, I use Service Type framed and Framed-Protocol PPP. This does not work with the Cisco ACS SE. Nothing shows up in the newspapers. It shouldn't be so difficult, but for some reason I can't make it work.

    Thanks for any help.

    Jutta Kullmann

    Jutta,

    Good to know it works very well. Please mark this thread as solved so other can benefit from.

    Kind regards

    ~ JG

  • Cisco ACS and the domain controller

    Hello

    We are currently using the Cisco ACS 3.2.3.11 solution engine and using a Windows domain as a remote agent controller.

    We now have the ACS to 4.1

    1. do I need to upgrade the remote agent on the domain controller as well?

    2. any computer on the network can be used as a Distribution Server?

    3. after an initial backup and upgrade then to 3.3.3.3 I make another backup before the upgrade to 4.1?

    You can use any PC in the network as a Distribution Server.

  • Cisco ACS 4.1 for external advertising for authentication

    Hello

    We have just configured Cisco ACS 4.1 solution engine and using a Windows 2003 domain controller as a remote agent.we use as Protocol Ganymede.

    Users that are created in ACS himself are able to connect to various network devices. but users in domain (active directory) can not connect. We get the access denied message. same time we get external DB is not operational message in ACS.

    Active directory server where agent that runs in CSWINAgentlog, we get the following error 'NDLIB'... FOUND 0 TRUSTED DOMAIN.

    Could you please help us to isolate the problem.

    Thank you & best regards

    Make sure that the worm of acs and remote agent software is the same. And also execution of remote agent account must have special domain administrator rights, like the act as part of operating system and log in as a service.

    Kind regards

    ~ JG

  • Cisco ACS 4.2 1113 Recovery DVD

    Nice day!

    We have CSACSE-1113-k9 Cisco ACS 4.2 device 1113. And we need to reimage (restore the device to its original state). Can enyone help me with the correct link software.cisco.com image recovery DVDs?

    I'm trying to find it, but I can't see recovery dvd:

    Hello

    As far as I know, you don't have the possibility to download cisco.com ACS recovery DVDs. You can contact Cisco TAC and they can publish the software for you.

    Note If useful...

    Kind regards

    Kush

  • Cisco ACS user password change?

    Hi all

    Even if I don't check "Change Enable by PEAP password" setting on Cisco ACS, when a user tries to log on to the wireless network, whose domain password is going to expire, receives a popup on Windows XP, saying that their password is about to expire?

    Is this normal?

    PS: Check the screenshot attached.

    ACS is not able to send these messages for wireless users.

    He sends the AD.

  • Cisco ACS installation problem

    Hello everyone.
    I have Cisco acs 4.2 on windows 2008 64 bit installation and get a very strange error when installing. V: ismg_israel_acs it gives some encryption error.
    Can someone please help me on this who have encountered the same problem. My project is stopped cause of it.
    Thanks in advance.

    Sent by Cisco Support technique Android app

    Hi Rizwan,

    If you're upgrading some version prerequisites ACS then I think you get something like this V:\ismg_israel_acs\Acs\Crypto\init.cpp

    You need to locate the old CryptoAPI container used by ACS, which may still be on the system.  This is normally located in C:\Documents and Settings\username that installed ACS> \Application\Data\Microsoft\Crypto\RSA.

    There will be one or more files will be very long filenames hexdecimal. You must identify the right one.

    Open a command prompt in that folder and type "findstr /I CiscoSecure *.» ' * ' - the file name that appears should be the

    old container of ACS.

    Let me know if you will be able to search for any file.

    ~ BR
    Jatin kone

    * Does the rate of useful messages *.

Maybe you are looking for