Prime Infrastructure 2.0 "Wrong CLI Credentials" error with known good credentials

In the device work center sometimes devices show up with "wrong CLI credentials". Even when I change to known good SSH credentials and click the update & sync button the error does not go away.
Has anyone else had this issue? Does anyone know a workaround?
It seems absurd that you would not be able to edit the SSH credentials of devices.

ok, tried all that was said here. Nothing worked ... I do have banners, but no # sign ... removed them anyways ... then thinking about the banners might be causing issues for what PI expects ... (i do have my prompts changed to mask the platform) ... so i defaulted back to regular prompts ... WORKED !!!!
So here is what works for me ... no banners, no custom prompts AND device added through the 'classic theme'.
I presume the expectation is that the device begins with minimal config ... the rest is pushed through the config templates deployment. But have the developers thought of existing devices ? is it IOS version related (target device) or simply a bug.
BTW, PI v2.1
Edit --- needing to clarify, for some models (namely UC520) ... removed banner, custom prompts and i could add it comfortably through the Lifecycle interface.
Others (3550), could be inserted easily with banners and custom prompts ... rather inconsistent, though at least , i have working recipes.
Thanks for the help all :)

Similar Messages

  • Cisco Prime Infrastructure 1.3 Web Log In Error

    Hi,
    I recently installed Cisco Prime Infrastructure 1.3 per the set up guide. I am able to log into the VM back end but when I try to log into the web interface with the admin account I get the following error message "Invalid Username or Password. Please try again". I verified that the username and password are correct but I still can not get in.

    I think there is some bug (or feature) that makes that the accounts defined during setup are not valid in the web gui.
    Since the users I created using CLI, work when I SSH into the PI 1.3, I know they are correct.
    Clearly the web part uses a different way to authenticate users. I'm told all this worked just fine in PI 1.2, so not sure what cisco is up to.
    To resolve this use the root account to login in the web interface.
    It has the same pw as the admin user.
    There you can create an admin account (and or others)
    Cheers,
    Michel

  • Prime Infrastructure - Automating the change "mac@ - AP name" with CSV file

    Hi,
    We are going to deploy a lot of new LAP. For each site our  customer will give us an excel file with the MAC @ of the AP and the  target name.
    I was wondering if it was possible to automate the  injection of this file "mac <-> ap name" and then apply the  predefined template with P.I ?
    If yes, could you explain how, as I am new to Prime Infrastructure.,The goal is to avoid to rename each AP individually on prime as there is a lot of AP to deploy.
    Many thanks in advance !
    Oliv.

    Hi Oliv:
    In the Classic View of Prime Infrastructure, under Configure > Access Points, there's a menu option for Import AP Config.  This uses a .csv file to match APs by the MAC address and make changes in bulk.  From the online help:
    Sample File Header:
    AP Name,Ethernet MAC,Location,Primary Controller,Secondary Controller,Tertiary Controller
    ap-1, 00:1c:58:74:8c:22, sjc-14-a, controller-4404-1, controller-4404-2, controller-4404-3
    The CSV file can contain following fields. AP Ethernet MAC Address is mandatory, Optional fields are           AP Name, Location, Primary Controller, Secondary Controller and Tertiary Controller.            
    Optional fields can be empty. AP Config Import will  ignore empty optional field values. However, if Primary Controller and  Secondary Controller entries are empty then Unified AP update is not  done
    Ethernet MAC: AP Ethernet MAC Address
    AP Name:AP Name
    Location:AP Location
    Primary Controller:Primary Controller Name
    Secondary Controller:Secondary Controller Name
    Tertiary Controller:Tertiary Controller Name

  • Prime infrastructure 2.1.2 cli template "copy tftp://..." error

    I tried to copy a new ios image to several 3850 switche via CLI template but it failed.
    The template lokks like:
    #INTERACTIVE
    copy tftp://10.x.x.x/cat3k_caa-universalk9.SPA.03.06.02a.E.152-2a.E2.bin flash: <IQ>Destination filename [cat3k_caa-universalk9.SPA.03.06.02a.E.152-2a.E2.bin]? <R>
    #ENDS_INTERACTIVE
    The error message looks like:
    Error : Command returned an error : copy tftp://10.x.x.x/cat3k_caa-universalk9.SPA.03.06.02a.E.152-2a.E2.bin flash: ^ % Invalid input detected at '^' marker. SLT-EGDV4-255-4(config)#
    What is wrong here?
    Regards
    Stephan

    Well, from my point of view I've set up all things regarding ssh/scp correctly, but an upgrade via software deployment and ssh fails. Here is the logfile:
    ade # cat 10.142.255.5_scp_telnet.log
    dir /all flash:
    Directory of flash:/
    54210 -rwx 2097152 Apr 28 2015 08:01:10 +02:00 nvram_config
    69697 drwx 4096 Apr 16 2015 14:27:37 +02:00 dc_profile_dir
    54215 -rw- 10435 Apr 23 2015 14:04:01 +02:00 wnweb.tgz
    14 -rw- 1248 Apr 23 2015 15:02:23 +02:00 packages.conf.3-6
    54216 -rw- 82615244 Apr 23 2015 15:02:18 +02:00 cat3k_caa-base.SPA.03.06.02aE.pkg
    54222 -rw- 99253056 Apr 23 2015 15:02:19 +02:00 cat3k_caa-wcm.SPA.10.2.120.0.pkg
    15 -rw- 1248 Apr 28 2015 07:52:55 +02:00 packages.conf.3-5
    54218 -rwx 2296 Apr 17 2015 09:52:48 +02:00 vlan.dat
    54217 -rw- 4922044 Apr 23 2015 15:02:18 +02:00 cat3k_caa-drivers.SPA.03.06.02aE.pkg
    12 drwx 4096 Jan 6 2014 07:41:29 +01:00 mnt
    85188 -rw- 79122052 Feb 10 2015 08:44:16 +01:00 cat3k_caa-base.SPA.03.03.05SE.pkg
    85189 -rw- 6521532 Feb 10 2015 08:44:16 +01:00 cat3k_caa-drivers.SPA.03.03.05SE.pkg
    85190 -rw- 34530288 Feb 10 2015 08:44:16 +01:00 cat3k_caa-infra.SPA.03.03.05SE.pkg
    85191 -rw- 34846028 Feb 10 2015 08:44:17 +01:00 cat3k_caa-iosd-universalk9.SPA.150-1.EZ5.pkg
    85192 -rw- 25170832 Feb 10 2015 08:44:17 +01:00 cat3k_caa-platform.SPA.03.03.05SE.pkg
    85193 -rw- 77456192 Feb 10 2015 08:44:17 +01:00 cat3k_caa-wcm.SPA.10.1.150.0.pkg
    54219 -rw- 33756144 Apr 23 2015 15:02:18 +02:00 cat3k_caa-infra.SPA.03.06.02aE.pkg
    54220 -rw- 42882380 Apr 23 2015 15:02:18 +02:00 cat3k_caa-iosd-universalk9.SPA.152-2a.E2.pkg
    54221 -rw- 27362192 Apr 23 2015 15:02:18 +02:00 cat3k_caa-platform.SPA.03.06.02aE.pkg
    13 -rw- 1248 Feb 10 2015 08:44:22 +01:00 packages.conf
    1621966848 bytes total (1021952000 bytes free)
    SLT-EGDV4-255-5#software clean
    Preparing clean operation ...
    [1]: Cleaning up unnecessary package files
    [1]: No path specified, will use booted path flash:packages.conf
    [1]: Cleaning flash:
    [1]: Preparing packages list to delete ...
    In use files, will not delete:
    cat3k_caa-base.SPA.03.03.05SE.pkg
    cat3k_caa-drivers.SPA.03.03.05SE.pkg
    cat3k_caa-infra.SPA.03.03.05SE.pkg
    cat3k_caa-iosd-universalk9.SPA.150-1.EZ5.pkg
    cat3k_caa-platform.SPA.03.03.05SE.pkg
    cat3k_caa-wcm.SPA.10.1.150.0.pkg
    packages.conf
    [1]: Files that will be deleted:
    cat3k_caa-base.SPA.03.06.02aE.pkg
    cat3k_caa-drivers.SPA.03.06.02aE.pkg
    cat3k_caa-infra.SPA.03.06.02aE.pkg
    cat3k_caa-iosd-universalk9.SPA.152-2a.E2.pkg
    cat3k_caa-platform.SPA.03.06.02aE.pkg
    cat3k_caa-wcm.SPA.10.2.120.0.pkg
    packages.conf.3-5
    packages.conf.3-6
    [1]: Do you want to proceed with the deletion? [yes/no]: yes
    [1]: Clean up completed
    Than it fails back to TFTP which is working but taking lots of time... Attached is a screenshot of image management in PI.

  • Prime Infrastructure 1.2, 1.3, 2.0 with Citrix Xenserver

    Hello all,
    i wanted to try Prime NCS with Xenserver but this combination does not work. ncs is not sstarting, it crashes with a java exception.
    Does anyone know if PI 1.2, 1.3 or 2.0 will work/start with Citrix Xenserver? if there are any experiences out there, please let be know.
    thanks in advance
    reagards
    -andreas

    Xenserver is definitely not a supported hypervisor for any version of Prime.
    With Cisco's network management products "not supported" typically is synonymous with "won't work". Even if you could hack around the roadblock with a given version, chances are it would break again on the next upgrade. Also, the TAC would not support any issues you have if you're not running on a supported platform.

  • Javascript errors with IE6 - Goods receipt

    User have problems and receive javascript errors all the time, he is running IE6 which is a very old version, but according to PAM it should be supported. Java-version is not up-to-date on end user either. Unfortunately we can´t force an update on this.
    error message:
    Line 2647
    Char 9
    Error: unterminated string constant
    Code 0
    URL from eprocurement, including session ID and bc/gui/sap/its/bbpcf03/~session ID
    transaction template is bbpcf03
    Any ideas?

    Dear Poster
    Your thread has had no response since it's creation over
    2 weeks ago, therefore, I recommend that you either:
    - Rephrase the question.
    - Provide additional Information to prompt a response.
    - Close the thread if the answer is already known.
    Thank you for your compliance in this regard.
    Jason Boggans
    SAP SRM SDN Moderator

  • Cisco Prime Infrastructure patch 2.1.1 - installed or no?

    I’ve reinstalled new Cisco Prime using the newest ISO image version 2.1.0.0.87. After that I installed the patch file (pi211_20140630_01.ubf) for version 2.1.1 and rebooted the server. After that I don’t see any information in CLI that I have version 2.1.1 installed. When I type sh ver I still see version 2.1.0.0.87. The only information which confirm this information is a “Software update” site in GUI interface where status of the patch is "Installed". Is this normal behavior?
    Regards
    Lukas

    Patch installed through ubf not showing info in CLI and login page
    CSCup78886
    Description
    Symptom:
    After installing the "2.1.1" patch (filename pi211_20140630_01.ubf) for Prime Infrastructure 2.1.0.0.87 through the Administration > Software Update page and issuing an "ncs stop/ncs start" sequence from the CLI, the version information on the Prime Infrastructure login page, the CLI output of "show version" or Help > About pages does not indicate version 2.1.1.
    Conditions:
    Workaround:
    At this time, there is no workaround. Please confirm proper patch installation on the Administration > Software Update page. Column "Installed' with the value "Yes" and column "Pending Restart" with the value "No" indicate that the 2.1.1 patch is indeed correctly installed.
    Last Modified:
    Jul 22,2014
    Status:
    Open
    Severity:
    6 Enhancement
    Product:
    Network Level Service
    Known Affected Releases:
    (1)
    2.1(1)

  • Using Windows Network Policy Server to authenticate Prime Infrastructure 1.2 admin access

    Dear all,
    How can I authenticate admin access to the Prime infrastructure 1.2 using AAA mode RADIUS with Windows Network Policy Server as RADIUS server? I find some information using ACS as RADIUS server but cannot find how to for Windows NPS.
    I try to configure the NPS but an error prompted when logging in to PI using an account in the NPS server, "No authorization information found for Remote Authenticated User. Please check the correctness of the associated task(s) and Virtual Domain(s) in the remote server"
    Thanks for your help.
    Dennis

    Ok, I was able to resolve this over the weekend.  The actual fix is a little complicated.  You can find the full explination here: http://technologyordie.com/windows-nps-radius-authentication-of-cisco-prime-infrastructure
    The basics are that Prime (1.3 is the version I am using at this point) expects two AV pairs from radius.  They are as as follows:
    NCS:role0=Admin
    NCS:virtual-domain0=ROOT-DOMAIN
    "Admin" is the name of the group you would like your users to have access at and "ROOT-DOMAIN" is the name of the domain you would like them to have access to.
    For TACACS+ I suspect the AV Pairs are going to be the same but I have not been able to test that.

  • Fail back unsuccessful in Prime Infrastructure 2.0

    Fail back unsuccessful in Prime Infrastructure 2.0.
    Getting foll error while starting NCS services:
    health monitor running with an error....

    Hi Yusuf,
    there could be many reasons of the failure of the health monitor services ... could be a databases faulty..
    If you have  backup  or if your PI was running on VM and you have some snap shot then I would suuggest you to Restore(backup)  it.
    ***Try to reboot the server once before you try to restore the backup..
    Thanks-
    Afroz
    ****Ratings Encourages Contributors****

  • Prime shows wrong cli credentials but they are good

    Hey!
    Prime discovered both Nexus 7k Core Router. All fine...
    On the first one Prime is getting all informations with entered CLI credentials in the device work centre.
    On the second Nexus it always shows "wrong cli credentials" but they are 100% correct.
    Login into the second Nexus via putty and the same credentials is also fine.
    I can't convince Prime tocollect the Informations from the second Nexus.
    Even ssh from prime cli to this device ist ok...
    Any ideas?

    ok, tried all that was said here. Nothing worked ... I do have banners, but no # sign ... removed them anyways ... then thinking about the banners might be causing issues for what PI expects ... (i do have my prompts changed to mask the platform) ... so i defaulted back to regular prompts ... WORKED !!!!
    So here is what works for me ... no banners, no custom prompts AND device added through the 'classic theme'.
    I presume the expectation is that the device begins with minimal config ... the rest is pushed through the config templates deployment. But have the developers thought of existing devices ? is it IOS version related (target device) or simply a bug.
    BTW, PI v2.1
    Edit --- needing to clarify, for some models (namely UC520) ... removed banner, custom prompts and i could add it comfortably through the Lifecycle interface.
    Others (3550), could be inserted easily with banners and custom prompts ... rather inconsistent, though at least , i have working recipes.
    Thanks for the help all :)

  • Error in Prime Infrastructure 2.0 after Controller upgrade

    Hello
    I've got two WiSM and Prime Infrastructure 2.0. Last week I upgraded one WiSM to 7.0.250.0, plus a third controller. That worked fine, but since then, my PI shows one of the two controllers of the second WiSM as "Unreachable". I rebooted the PI and also rebooted the controller again, to no avail.
    I tried now to update the snmp v2c credentials in PI, but receive an error.
    The error message shown when I try to update the credentials is:
    Error: Common-1: Some unexpected internal error has occurred. If the problem persists please report to the Tech Support.
    Error:Detail: errorId=6 Invalid credential name: snmp_transport.
    Any ideas?
    I can normally access the controller through its webinterface and don't see any errors that would spring to the eye.
    [edit]
    Just manualy run the Task "Controller Operational Status" and received this error:
    com.cisco.wnbu.server.common.errors.InternalException: COMMON-1
    Thanks
    Patrick

    I worked with TAC Team and the final solution was to delete all controllers and add them again. This might get fixed in a future version though.

  • Prime Infrastructure 2.0 and Nexus 5548, SSH credentials fail

    Hi,
    I'm having problem getting the Prime Infrastructure 2.0 to login with SSH to a Nexus 5548 to do an inventory. I get "Wrong Telnet/SSH credentials". But when I use the same credentials from another SSH-client it works fine. I also tested to SSH from the console of the Prime-server and that also works fine.
    Any ideas???
    Regards,
    Stefan Lindkvist

    I have PI 2.0 working against Nexus 5k's in two different installations. See below for an example (click to enlarge).
    Have you put in an entry in both the login and enable fields (even though they are not separately required when logging in directly)?

  • Prime Infrastructure 2.1 - User add failed : Some unexpected internal error has occurred.

    Setting up Prime Infrastructure to manage 2504 WLC, trying to add Lobby Ambassador and I get this error message:
    User add failed : Some unexpected internal error has occurred. If the problem persists please report to the Tech Support.
    Technically, this is my second attempt at setting up PI.  I set it up initially with the wrong version of PI and created a lobby ambassador.  I followed the instructions from the forum with a similar problem that said to remove the trap receiver on the WLC from my first attempt at installing PI.
    https://supportforums.cisco.com/discussion/11110686/failed-add-device-wcs-reason-common-1-some-unexpected-internal-error-has-occured 
    I'm now able to add a Lobby Ambassador as long as its not the same username that I created on the previous PI setup.  So I suspect this Lobby Ambassador username is somewhere on the 2504 WLC, but I can't find it anywhere to remove it.

    I have just been struggling with a similar issue on a fresh install of Prime 2.1  Upgraded to 2.1.1.
    If I try to create the user with lobby ambassador role it just fails with "unexpected internal error".
    I eventually found that by creating the user as a normal admin user first - the user is added.  You can then go in a remove the admin role and change the role to lobby ambassador.  This works with no internal error and the lobby admin user is working fine.
    I would say it is just a bug.

  • Prime Infrastructure - CLI Template - SmartPort Macro

    I'm hoping that someone can provide an example of a CLI Template for deploying a SmartPort Macro in Prime Infrastructure 2.0. I've tried multiple formats and can't seem to get it to work.
    Macro to be configured:
    macro auto execute TEST_MACRO {
         blah
         blah
         blahdeeblah
    Example 1 Template:
    #INTERACTIVE
    macro auto execute TEST_MACRO {
    <IQ><R>
    <IQ><R>blah
    <IQ><R>blah
    <IQ><R>blahdeeblah
    <IQ><R>}
    #ENDS_INTERACTIVE
    The above example runs successfully, however it does not actually produce a result.
    Example 2 Template:
    <MLTCMD>macro auto execute TEST_MACRO {
    blah
    blah
    blahdeeblah
    }</MLTCMD>
    The above example fails with the following result:
    Error : Exception while sending interactive commands to device, Expect timeout: Failed to match expected device output due to Expect timeout current timeout 60000. Current output : > >blah >blah >blahdeeblah >} mc-t307-acc06(config)# Current expects : blah blah blahdeeblah \}
    I'm sure that all my troubles stem from '>' result that is sent to the CLI after each line of the function is entered, however I can't seem to work around the problem.
    I've tried many more combinations without success... Any help would be appreciated.

    Instead of 
    #INTERACTIVE
    macro auto execute TEST_MACRO {
    <IQ><R>
    <IQ><R>blah
    <IQ><R>blah
    <IQ><R>blahdeeblah
    <IQ><R>}
    #ENDS_INTERACTIVE
    Try 
    <MLTCMD>
    macro auto execute TEST_MACRO {
    blah
    blah
    blahdeeblah
    </MLTCMD>
    This works for me.  

  • Prime InfraStructure 2.2 Configuration Template error

    Hi All,
    I'm facing Configuration template error . I can add the CLI template then after i press on Deploy i get error message  and this is happening with all the CLI templates  . ( also Attached the error )
    The error message : "
    Template Deployment- Prepare and schedule : HA With Virtual IP
    There was an error while parsing and rendering the content. (updateLeftTreeOnce is not defined )
    The HA With Virtual IP Template Body as below :
    logging 10.30.2.252
    ip access-list standard VTY_ACCESS
    no deny any log
    permit 10.30.2.252
    deny any log

    We are facing the exact same issue. Here are the version :
    Cisco Prime Infrastructure
    Version : 2.2.0
    Build : 2.2.0.0.158
    We tried restarting the NCS services, but it doesn't help. We have the issue on differents PC and browsers. Users told me they got the issue before but it disappeared by itself. We will open a case about it.

Maybe you are looking for

  • IPhone Mail App showing "negative" number

    Hey guys, for some reason my mail app on my iphone is showing a "negative 1" even though there is no mail. I deleted the account, re-entered all the information and it is still there. Also, when a new mail arrives it goes back to 0 (or no notificatio

  • How to display download link with get_blob or get_blob_file_src ?

    Hello there, I am struggling to display a download link in a SQL query report. Based on the requirement, I have to create a sql query report that the source contains a series of union select query. Example here WITH current_engagement AS ( SELECT def

  • Can't get iTunes to install have done all Apple recommend on their support

    Hi Everyone, I am new to these and forums generally. And this request is on behalf of my teenage daughter, whose mini ipod I am trying to sort out. I have got a problem installing iTunes and I am really hoping that someone here can help, as Apple's s

  • Unbale to install November update on Outlook 2007 SP3

    Hi I was trying to upgrade my outlook 2007 clients for connecting to Exchange 2013 environment. First I have installed Office SP3 (kb2526086). Outlook version after that is 12.0.6607.1000. Later I  tried to install nNovember 2012 update which is a pr

  • Problems trying to install the latest flash player on Windows XP

    I have been trying for a while now to install flash player the latest version but keep getting the same error message 19166, does anyone have a solution to this please as it has now become so frustrating!!! I would appreciate any help please Thanks