[nsp] password changing, ssh, cisco secure

Dmitri Kalintsev dek at hades.uz
Tue Sep 9 12:32:42 EDT 2003


On Mon, Sep 08, 2003 at 07:33:30AM -0400, Jared Mauch wrote:
> 	This is likely a bug.
> 
> 	I've found that cisco doesn't perform a lot of test coverage
> of their ssh featureset :(

When one connects with SSH and their auth server is using S/Key, IOS does
not display the challenge string, for example. *Sigh*. But on other hand,
the "other well-known vendor" has kind of the same problem, too (although
kind of solvable) ;)

> 	- jared
> 
> On Mon, Sep 08, 2003 at 10:15:18AM +0100, Adam Atkinson wrote:
> > If a user is configured with "change password at next login" in ACS,
> > and the user connects via telnet, a "type in new password" prompt
> > appears and all seems to be well.
> > 
> > If the user uses ssh, the connection just fails.
> > 
> > Is there something special that needs to be done to make this work in
> > ssh? I've looked around on Cisco's web site and can't see anything.
---end quoted text---

SY,
-- 
D.K.


More information about the cisco-nsp mailing list