[rancid] ASA-5585 Enable mode

Azher azheramin at gmail.com
Fri Dec 29 02:42:46 UTC 2017


Hi All,

Our current Cisco ASA devices "ASA5550" , 8.4(7)30, work fine with RANCID.

Same config does not work for ASA-5585, 9.8(1). I am not sure why it is
sending "admin" twice and later it sends "enable" at the prompt .... Any
suggestions ?

add user sslvpnb admin
add password sslvpnb pass1 pass2
add autoenable sslvpnb 0
add method sslvpnb ssh

[rancid at rancid ~]$ more var/asa/router.db
sslvpn1;cisco;up
sslvpn2;cisco;up
sslvpna;cisco;up
sslvpnb;cisco;up

[rancid at rancid ~]$ clogin sslvpnb
sslvpnb
spawn ssh -c aes128-ctr,aes128-cbc,3des-cbc -x -l admin sslvpnb
admin at sslvpnb's password:
User admin logged in to sslvpnb
Logins over the last 44 days: 29.  Last login: 18:09:41 PST Dec 28 2017
from 68.181.191.19
Failed logins since the last login: 0.  Last failed login: 06:47:32 PST Dec
28 2017 from 68.181.191.19
Type help or '?' for a list of available commands.
sslvpnb> admin
         ^
ERROR: % Invalid input detected at '^' marker.

Error: Unrecognized command, check your enable command
sslvpnb> admin
         ^
ERROR: % Invalid input detected at '^' marker.
sslvpnb> enable
Password:
Invalid password
Password:
Invalid password
Password:
Invalid password
Access denied.
sslvpnb>


Thanks
-Azher
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.shrubbery.net/pipermail/rancid-discuss/attachments/20171228/b0c3eab1/attachment.html>


More information about the Rancid-discuss mailing list