Changing shared key in bulk for Clients in ACS 4.2.1

HI,
is there any way to change the shared secret key for all devices in bulk instead of going to each clients and changing key in ACS 4.2.1 ?
Please let me know if is there any way to perform it faster.
Thanks

Hi Nitin,
Well, if you have all the devices in a single NDG then just click on that NDG >> at the bottom click edit properties  >> enter the new shared secret key there and it will take precedence from there on. Even though if you click on any AAA client inside that NDG, it will show the OLD shared secret key but due to the presence of this feature where NDG key will always override the AAA client, this will surely work for you.
If you're not convinced with the above suggestion and really want to change the shared secret key then let me know;
Are you using ACS SE or ACS windows. I'm assuming that you have ACS SE
Here you need a CSV file with the action code to certain NAS and you should be able to synch the CSV file with RDBMS to the database using
4.2 version
Code 224 - UPDATE_NAS
VN = AAA client Name
V1 = IP-Address
V2 = shared secret key
V3 = vendor
RDBMS Synchronization Import Definitions
http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2/user/guide/A_RDBMS.html#wp148322
Action Codes for Modifying Network Configuration
http://www.cisco.com/en/US/docs/net_mgmt/cisco_secure_access_control_server_for_windows/4.2/user/guide/A_RDBMS.html#wp78096
HTH
Jatin
Do rate helpful posts~

Similar Messages

  • Changing shared variable reference modes for all nodes in applicatio​n. Shortcut?

    I have a large application which makes extensive use of both network-published and single-process shared variables.  I want to change the reference mode of every such node in the application from absolute to target-relative.  Is there any way to do this without having to open every subVI in the application and use the right-click menu on every node?
    Sean

    I don't know of any shortcut, but if you want to change the reference node of everything in the application you could probably script it.  I was thinking something similar to what I have below where you traverse the BD of a specific VI for all SharedVariableNodes and change the relative mode to Target Relative.
    Depending on how your project is organized you can add some additional functionality before the open VI reference to go through and open the reference of every VI in your project.
    Matt J
    Professional Googler and Kudo Addict
    National Instruments

  • Changing shared memory in Bios for graphics - Satellite C660 217

    There is no setting in the BIOS that i can find.
    Bios is up to date

    Hi
    This is not possible.
    The shared memory is assigned automatically and this is controlled by graphic card driver.
    But the shared memory is only in use if the applications (i.e game) would require more graphic RAM.

  • WLC: Need to change pre-shared key with a script

    Hello,
    I need to change pre-shared key on a Guest Wi-Fi with a script.
    Does anybody has an idea how to find the right entry in the WLC 2125 MIB to change it through SNMP?
    Gorazd

    Hi,
    That is a textFramePreferences property
    mySelection.textFramePreferences.verticalThreshold = Number (range 0- 8640)
    ID Object Reference says:
    "...The maximum amount of vertical space between two paragraphs. Note: Valid only when vertical justification is justified; the specified amount is applied in addition to the space before or space after values defined for the paragraph..."

  • ASA Iphone, Ipad VPN client pre-shared key (PSK) special characters bug

    I ran into this in a deployment of IPSec clients with apple ipad and iphone native vpn client. Here are details:
    Cisco ASA 8.2.5 OS
    Ipad, running 5.0.1
    Iphone i4S, running OS 5.0.1
    Special characters make your pre-shared key more secure, so i used a password generator app to make one that coincidently included a " (quotation mark). After configuring this PSK on a Ipad, i was unable to connect. I saw nothing in the ASA logs, indicating the Ipad didnt even try to connect.
    The Ipad generated the following error message:
    VPN Connection
    A configuration error occured
    OK Button
    After searching for quite some time, i found this somewhat obscure reference to the bug:
    http://blogs.oreilly.com/iphone/2008/07/strong-passwords-can-hurt.html
    Special thx to this guy!
    So i started to test special characters to see what would work, adding in 1 character at a time. Here is where I stopped:
    pre-shared-key !@#$%^&*()_-+=;:'<>,.
    These characters worked in the PSK. If you are curious, and want to play, have fun. I assume the alphnumerics will work since those are pretty standard.
    As a side note, here are a few more interesting items:
    1) The " (quote mark) does work when you run the real cisco vpn client. This was successful on a Windows 7 laptop with 5.X VPN Client.
    2) The ? (question mark) doesnt work as well, but that is a little easier to figure out because when you configure it on the ASA, context-sensitive help kicks in and knocks you off the config line.
    3) Iphone I4S suffers from the same issue - doesnt like quotes.
    4) Android is probably not affected by this bug, but I tested on an open source TUN driver- enabled adroid - not the bionic.
    Hope that saves someone some time, sometime!
    W

    Thanks for the tip.
    Help stamp out special characters in passwords. Their "strength" is a myth!
    Explained nicely here: http://xkcd.com/936/

  • Cannot install KMS key in VAMT for KMS clients

    Dear Sir / Madam,
    I have some technical problems about setup the KMS host and KMS clients.
    OS of the KMS host: Windows Server 2012 Standard
    OS of the KMS client: Windows 7 Professional (32bit)
    Question 1:
    I want to use KMS host server to handle KMS keys and activations for KMS clients. Which type of KMS key need to install in KMS host ?
    Would I need to install Windows 7 Professional KMS key or
    Windows Server 2012 Standard KMS key in the Volume Activation Management Tool (VAMT) ?
    Question 2:
    I found that I cannot installed the Windows 7 Professional KMS key in the Volume Activation Management Tool (VAMT), it pop-up an error message said that the KMS key invalid. How can I fix the problem?
    Thanks for your help!

    Hi Siu Wai,
    You can also follow these steps:
    1. Select a computer that you want to be your KMS host:
    2. Install Windows Server.
    3. At cmd prompt type the following:
    Slmgr.vbs /ipk  <your KMS KEY from MVLS>
    The /ipk installs your MVLS key.  Note if you need to change your key. For example change from a KMS_B to KMS_C key you must restart the Software Licensing service.
    4. At cmd prompt type the following:
    Slmgr.vbs /ato
    The /ato activates the KMS host with Microsoft. You must activate the KMS host.
    5. Restart the Software Licensing service.
    6. Install the KMS client computers by using volume license media. You should not be prompted for cdkey during installation
    7. By default these KMS client computers will query DNS and locate your KMS host and activate
    KMS Client Setup Keys
    To reset computers to be KMS clients type the following at elevated command prompt:
    Slmgr.vbs /ipk xxxxx-xxxxx-xxxxx-xxxxx-xxxxx
    Where xxxxx-xxxxx-xxxxx-xxxxx-xxxxx is the generic VL key from the following link.
    http://technet.microsoft.com/en-us/library/ee355153.aspx#EFAA
    Refer to:
    Is it possibile to host multiple KMS Keys
    on a single KMS server?
    If there is anything else regarding this issue, please feel free to post back.
    Best Regards,
    Anna Wang
    Please remember to mark the replies as answers if they help and unmark them if they provide no help. If you have feedback for TechNet Support, contact [email protected]

  • Outlook 2013 - Password change breaks S/MIME Certs "An error occurred in the underlying security system. Key not valid for us in specified state."

    AD password change comes up, user changes password.
    Tries to send signed or encrypted email with a Comodo S/MIME certificate, and gets the following error:
    ""An error occurred in the underlying security system.  Key not valid for us in specified state."
    I now have two reports of this error - one on Windows 7, and one on Windows 8.0 (remote user).
    The one on Windows 8.0, we tried removing their S/MIME cert from Outlook/Windows and re-adding, this did NOT resolve the issue.
    Plan was originally to have the 8.0 user ship their machine in, and wipe it, since nothing else could fix it and I wasn't finding anyone else with the same issue.  Now that I've got a second user with the same issue, its looking like a bug/issue and
    not a random glitch.
    Thanks in advance for any and all help with this!

    Hi,
    Thank you for your question.
    I am trying to involve someone familiar with this topic to further look at this issue.
    Thanks,
    Melon Chen
    Forum Support
    Come back and mark the replies as answers if they help and unmark them if they provide no help.
    If you have any feedback on our support, please click
    here

  • How to change chords & keys for loops?

    Hey, guys! I'm a total newbie, so I was hoping someone could give me "step-by-step" instructions for how to do this.... I am creating a song using one of the blue acoustic guitar loops in Logic Pro 9 & I have the option to "Play in" any chord/key imaginable when I am listening to the various loops... However, when I drag the loop over to the work area, it reverts back to the original key & I have no idea how to change it to the preferred key. I want to use this same loop throughout the song, but I need to be able to change the key several times in order to create my own chord progressions.... Any idea how I can make this happen? Thanks!!!!

    May I dare to tell you the magic four letters?
    But to give you a hint: learn how to configure global tracks, activate the chord track and look if you find the epic answer there
    Fox

  • I'm currently using Adobe Acrobat X to create PDF portfolios for client deliverables. Within the portfolio, there is a "Files" view which can be seen below. I'm interested in knowing if it's possible to bulk import metadata into either the Description fie

    I'm currently using Adobe Acrobat X to create PDF portfolios for client deliverables. Within the portfolio, there is a "Files" view which can be seen below. I'm interested in knowing if it's possible to bulk import metadata into either the Description field or any user created field via a CSV, spreadsheet, etc. Thanks for any insight which can be given.

    I'm currently using Adobe Acrobat X to create PDF portfolios for client deliverables. Within the portfolio, there is a "Files" view which can be seen below. I'm interested in knowing if it's possible to bulk import metadata into either the Description field or any user created field via a CSV, spreadsheet, etc. Thanks for any insight which can be given.

  • Change the Default Page Size for WebI Rich Client 4.0

    Hi:
    I am trying to change the default paper size for Webi Rich Client 4.0. 
    In 3.x you made the changes to the defaultconfig.xml located in the path C:\Program Files\Business Objects\BusinessObjects Enterprise 12.0\classes\AppletConfig.
    In 4.0 I canu2019t seem to locate the file, can you advise if the file is the same name and where the file located.
    Thanks
    Brad

    Hi,
    Please check out the User Guide - see section Web Intelligence Cascading Style Sheets (CSS)
    http://help.sap.com/businessobject/product_guides/boexir4/en/xi4_ia_en.pdf
    Regards
    H

  • After 2 years want to change depreciation key for a asset

    Hi,
    For a particular asset we want to change depreciation key for this asset already we have posted depreciation for 2 years. After 2 years user realizes they are using wrong depreciation key now they want to change depreciation key for a particular asset.  In new financial year till now they have not posted depreciation .I just want to now what is the impact of this changes how we will adjust the value in future because previously they are calculating depreciation  1.63% now they want to calculate depreciation 3.33 % can any one tell me about the future impact of asset.
    How we will adjust the value?
    Thanks and Regards,
    Neha

    Hi,
    Does your user wants to post the depreciation for closed Fiscal years?
    If yes First calculate unplanned depreciation for the difference up to the last closed fiscal year and post in the current year.
    Now after posting this then change the depreciation key in the asset master and in the next run the system identifies the difference between posted value with the old Key and teh correct key and adjusts the difference in the current period depreciation run.
    If the user don't want to post the values of the previous years, change the key in asset master so that the difference in the depreciation from the start of the fiscal year is adjusted in the current period.
    Future impact if the option is second the asset life will be more when compared to the actual life. In first case there is no effect.
    Provide Business with these two solutions and they have to choose between the options.
    Reward points if useful.
    Sarma

  • Max EAPOL-key M1 retransmissions exceeded for client

    WISMS on ver 6.0.196
    Receiving several hundred messages:
    *Jul 06 16:51:58.943: %DOT1X-3-MAX_EAPOL_KEY_RETRANS: 1x_ptsm.c:407 Max EAPOL-key M1 retransmissions exceeded for client 00:19:88:05:2d:53
    *Jul 06 16:51:57.792: %DOT1X-3-MAX_EAPOL_KEY_RETRANS: 1x_ptsm.c:407 Max EAPOL-key M5 retransmissions exceeded for client 00:40:9d:3a:c9:8f
    *Jul 06 16:51:56.991: %DOT1X-3-MAX_EAPOL_KEY_RETRANS: 1x_ptsm.c:407 Max EAPOL-key M1 retransmissions exceeded for client 00:19:88:06:64:82
    Any thoughts? Wireless users are experiencing random disconnects.

    In looking at the radius configuration again I notice that we have two servers defined. I looked through the logs and didn't see anything alarming, until I checked the secondary radius server. I was just told that the second radius server has been shutdown without notice.
    I will remove that from the WLAN config later tonight.
    Obvious question, but will ask it anyway, will this cause these errors?

  • "Poor Signal", "Coverage hole pre alarm for client" after changing from Autonomous to Lightweight infrastruture

    Dears,
    I use to have wireless infrastructure based on autonomous APs 1142n, auth w/ 802.1x and everything was fine.
    My Company decided to implement WLC 5508, and I changed only 2nd floor (2 APs) as lightweight and implement WLC over there as pilot testing...
    Now All persons here (around 35 clients) are complaining about disconnections, poor signal...
    Both APs are distant each other maximim of 15 meters... Our office has a medium open spaced room, with (20 X 15 meters) only 2 "Pilaster" in the middle of the room.
    I am facing this message at WLC logs
    Thu Nov 1 16:03:57 2012
    Coverage hole pre alarm for client[1] 00:37:6d:eb:67:44 on 802.11a interface of AP 00:26:cb:4c:8e:b0 (AP01-RJOBTF). Hist: 1 0 3 4 1 1 2 7 2 9 10 13 4 1 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
    Thu Nov 1 15:55:21 2012
    Rogue AP : 7c:4f:b5:ed:27:a1 detected on Base Radio MAC : 1c:aa:07:6e:93:20 Interface no:0(802.11b/g) on Channel 11 with RSSI: -92 and SNR: 1 and Classification: unclassified
    Thu Nov 1 15:50:27 2012
    Coverage hole pre alarm for client[1] 28:e0:2c:6d:11:58 on 802.11b/g interface of AP 00:26:cb:4c:8e:b0 (AP01-RJOBTF). Hist: 0 0 2 5 11 16 9 2 5 12 1 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0 0
    Is there any best practices I should perform over here ?
    Any specific configuration with the signal itself ? In my opinion we dont have a big room here .. 2 APs should work very well... but they are not...
    I also can see many Rogue APs... I am not sure if that rogues aps have anything to do with this problem.... also I didnt change anything at 3rd floor (not sure if the
    Thanks in advance!!!

    Actually I am using both APs as lightweight in 2nd floor.
    How about this power level? where I can find those parameters ?
    At 3rd floor all APs are autonomous, I accessed one of them and find this parameter
    CCK Transmitter Power (dBm):           Max
    OFDM Transmitter Power (dBm):           Max
    Client Power (dBm):                     Max
    is that the parameter you talked about ?
    At WLC I found this screen
    Tx Power Level Assignment Algorithm
    Power Level Assignment Method
    Automatic
    On Demand
    Fixed
                             1                         2                         3                         4                         5                    
    Maximum Power Level Assignment (-10 to 30 dBm)
    Minimum Power Level Assignment (-10 to 30 dBm)
    Power Assignment Leader
    Last Power Level Assignment
    Power Threshold (-80 to -50 dBm)
    Power Neighbor Count
    Should I check anything else ?
    Thanks in advance!!!

  • Where to change posting key for Document type RG?

    Hi ,
    May I know where is IMG path to change posting key for Document type RG?
    Thanks.

    Hi,
    Posting key is not assigned to the document types.
    Posting key can be assigned to a particular trnsaction event etc., for example in OB40 for each transaction key in tax area, you can ddefine the posting key for bedit and credit.
    However you have the option to create a validation to check that this particular document type is allowed to be posted with certain posting keys. Validation can be created in OB28, GGB0. The details are available in SDN. Please search that.
    Regards,
    Gaurav

  • Change WOL Port number for clients

    Hi All
    We want to implement in our environment WOL functionality , for WSUS deployment and scheduled OSD deployments
    We cannot unfortunately implement the default UDP port 9
    My question is how can we change that default port on the clients?
    I know that we can change the port on the primary server -> Site configuration -> Sites -> Properties primary site server -> tab 
    Port and here we can change the port number of Wake on Lan
    For the client I noticed that there is a client setting -> Power Management -> Wake on Lan port Number (UDP) but that number is grayed out and set to 9
    Also when I create a custom Client Setting that port number is grayed out and set to 9
    How can I change that port number for the client?
    Thx in advance
    Regards,
    Johan

    The port number in Client Settings/Power Management is grayed out because "Enable wake-up proxy" is disabled. When you enable it, it becomes available. Be aware that wake-up proxy and wake on lan is 2 different things. (Beware mac address flapping)
    To change the Wake On Lan port go to, primary server -> Site configuration -> Sites -> Properties
    primary site server -> tab  Port.
    Wake On LAN port number (UDP)
    For System Center 2012 Configuration Manager SP1 and System Center 2012 R2 Configuration Manager only:
    Keep the default value of 9, unless you have changed the Wake On LAN (UDP) port number in the site Properties, Ports tab.
    Important
    This number must match the number in the site Properties. If you change this number in one place, it does not automatically update in the other place.
    Benoit Lecours | Blog: System Center Dudes

Maybe you are looking for