AAA/Identity/Nac :: CSACS-1121-UP-K9 - Possible To Upgrade It Being Non Upgrade Part
Sep 10, 2012
Is it possible to upgrade the CSACS-1121-UP-K9 to be a non upgrade part? We were going to upgrade from a Windows 4.x to the above Appliance (version 5.x) but there is now a reason to keep the old Windows version running therefore we cannot give the new Appliance the old ACS's licenses?!So we should have (with hindsight) bought a fresh version of the ACS 5.x rather than an upgrade.
We upgraded a CSACS-1121 from ACS 5.2 to ACS 5.4 with CLI Application upgrade ACS_5.4.0.46.0a.tar.gz FTP After ACS reboot, services never start... After 15 hours, we always get same message:
ACS/admin# show application status acs Application initializing... Status is not yet available. Please check again in a minute.
We installed patch 5-4-0-46-2.tar.gpg but we got same issue for 2 hours ...What could I do?
Is it possible to have Dual NIC on ACS v5.2 such as teaming or any else??
I am thinking of connecting the two NIC on the CSACS-1121-K9 appliance to two switches on the same network, but wondering if it will be possible or not.
We have 2 CSACS 1121 with Cisco ACS 5.2.0.26.10 The primary server manages 20000+ authentications per day. Its memory utilization increases everyday. It is now at 83% , there a limit?,What will happen when memory utilization reach this limit?,What can we do to purge memory utilization? (reboot, service restart.
I have a problem upgrading an appliance CSACS 1121 from version 5.1 to 5.2 because restore DVD has image of 5.1 not 5.2 and in cisco.com appears only two files 5.2-0-26-1.tar.gpg and ACS_v5.2.0.26.iso, the first image is a patch and the second I'm not sure if is image for version 5.2, in case if appropriate which would be the correct commands to perform the upgrade using CLI.
I have a 1121 autonomous AP which I switched to the lightweight mode by copying the LWAPP ios to its flash and issuing the command boot system flash IOS_file_Name. After that I was unable to associate the AP to my wireless controller because it was continiously rebooting. Unfortunately this AP does not have a console port so I can access the debug and see what is happening. And I was not able to switch it back to the autonmous mode becaus the AP won't accept the Autonomous mode IOS anymore.
I want to upgrade the Cisco ACS ver from 4.0 to 4.1.1.24 running on VM envoinment with primary and scondary server. I have tried to find documents related this upgradation.
My target is:
4.0====4.1.1.24====5.3
Secondly I wanted to know that this upgradation would possible for VMs or not. and this upgratation (4.0 to 4.1.1.24) could be possible on demo license?. because I have orderd to Cisco L-CSACS-53VMUP-K9 and CON-SAS-CSACS3V.?
I have two Windows 7 computers and neither one will successfully upgrade a 1242 AP to LWAP. However, I go to a coworker's XP machine and run the tool without issues. On Windows 7 I keep receiving the error message of ACL or Firewall is blocking. I have added rules and then even tried disabling the firewalls completely on both computers and still no success.
I'm not able to find any clear process/documentation on how to upgrade 5.1 to 5.4, so I have assumed that it will be a 2 stage process...Upgrade from 5.1 to 5.3 (or 5.2) Then upgrade to 5.4?
I upgraded my ACS 4.2 on a Windows 2003 R2 Standard Edition SP2 Server to 4.2.1.15.9. The server seems to be running, I see that it is able to authenticate and authorize my logins and commands on Cisco devices. However when I try to launch the web access from the desktop of the server either with https://<ip adress>:2002 or https://127.0.0.1:2002 I get a message that the website cannot be displayed. When I nmap the server I see that port 2002 is open.
I cannot import certificate from CA (Certificate Authority). When I attempt to install the certificate to CSACS SE 4.2, the following error occurs during installation: "Unsupported private key file format".
I have an ACS applicance that had a version 5.1 and i did an upgrade to 5.3 with latest patch.For some reason, the runtime process got stuck in (reinitializing and restarting) state.i did the recommended action to perform ACS stop and ACS start and even hard reset of the appliance, but it did not cut itThis process turned out to be a bug and it should have been fixed in version 5.3, but it has not i guess
i know that acs reset-config will solve the issue, but i have a problem here , the license file will be deleted as well with the config and i cannot find a way to export the license and then import it into the reseted config ACS hardware. Unfortunately, the license file is not saved anywhere in the company and i cannot affort to lose it.how to export the license from the applicance (CSACS-1120)?
I'm currently running ACS 5.3 Patch 7 in a VM on VMware ESXi. I download the application upgrade bundle, and placed it in my SFTP repository, and ran "application upgrade filename repository name". It throws an error that the manifest file is not found in the bundle.
I tried putting the ACS.gz file in an FTP repository, and even in an ISO file to attach to the VM. In all cases I receive this same error.I did verify the md5sum on the file to make sure it wasn't corrupted..
I want to upgrade the acs 5.1 in distributed system. We have one hub/ primary ACS and two other spoke / secodary acs. I have following querry. Will it be possible to upgrad only one Secondary server.>Will updated secondary ACS will able to sych it configuration with primary acs running on older version?Will updated secondary acs will retain the current configuration and authenticate the client.?
I try upgrade ACS 5.3.0.40 to new version 5.4.0.46. Everything looks ok:
ACS-machine/acsadmin# application upgrade ACS_5.4.0.46.tar.gz rep01 Do you want to save the current configuration ? (yes/no) [yes] ? Generating configuration. Saved the running configuration to startup successfully
% CARS Install application required post install reboot...
Broadcast message from root (pts/0) (Thu Dec 6 23:36:41 2012):
The system is going down for reboot NOW!
Application upgrade successful
But ACS machine (vmware instance) can't boot with this result: Volume group "smosvg" not found. (for details see attachment)
I have installed ACS Windows 2003 R2 Services Pack 2.
I am upgrading of version 4.1.1.23 to version 4.2.1.15. Recommended by Cisco.
Before of update everthing works fine.
After of upgrade, this does not authenticate user, sends the next message "External user not found", "Authentication session invalidated" and "internal error".
I am trying to upgrade ISE from 1.1.0 to 1.1.2.145 but failed. Find the details below.
DR-ise-pdp-01/admin# application upgrade ise-appbundle-1.1.2.145.i386.tar.gz ISE1 Save the current ADE-OS running configuration? (yes/no) [yes] ?
Generating configuration... Saved the ADE-OS running configuration to startup successfully Initiating Application Upgrade... Stopping ISE application before upgrade... Running ISE Database upgrade... % Application upgrade failed. check logs for more details.
I have a question about upgrade NAC Module, I follow standalone procedure to do the upgrade but I wonder about the upgrade file should I use because on the Cisco site I didn't find the upgrade file from 4.8.0 to 4.8.2.
what I found is nme-nac-upgrade-4.8_2-from-4.6.x.tar.gz ??!!!
So my question If I use the NAC upgrade file I was used for upgrade the CAM & CAS applaiances
Currently I am running Cisco ACS 3.2 ,now wanted to upgrade with the latest version along with the Authentication using AD , process/Document to upgrade the same .
Does the new UCS hardware change anything ?Can we bundle 2 NICs somehow to get interface redundancy ?If still not possible to configure that in ACS 5 itself:Can it enentually be done on the "hardware" level within the appliance firmware (UCS BIOS) ?(RHEL would provide NIC bonding,,, unfortunately its not accessable from ACS5 CLI)
we have a Cisco ACS 1113 SE running v4.0.1.44 and are trying to upgrade it to v.4.2.0.124 following the instructions to upgrade it to v4.1.1.24 first.
We are using the following CD "ACS SE Overall Upgrade CD ACS 3.3.4 and 4,1,1,24 Upgrades"
We can download the 4.1.1.24 image to the ACS appliance via distribution server but the upgrade fails- we obtained the following console output when attempted upgrade was tried;
Upgrade package was not verified Applying this upgrade package may corrupt the appliance Continue at your own risk!
I'm trying to upgrade my ACS 5.3 (patch 7) to ACS 5.4 and I've downloaded the application bundle from Cisco. I'm transferring the app bundle via FTP towards the VM containing ACS, yet I ALWAYS get %Manifest File not found in bundle. I've opened the bundle and found the manifest .xml inside.
I've double verified MD5 checks, size files, re-downloaded everything, even copied it to the local disk of the appliance. Also browsed through this forum to see that there are people having the same problem with other ACS version upgrades and besides re-downloading and using FTP there isn't a specific solution. I'm always getting this error. I know that it must be possible to do upgrade, but I'm stuck. I do see on the FTP server logs that the file gets transferred, but as pretty much as soon as it finishes transferring (not enough time in my view to extract a 1.2 GB file) I get an error
I'm doing the:
application upgrade ACS_5.4.0.46.tar.gz FTP (...) %Manifest file not found in the bundle
I have an ISE 3395 appliance that comes with ISE version 1.1.1.I've decided to upgrade it to version 1.1.2 patch 5 (latest patch version) and played with it for a few days. I set it up as a stand-alone box.
Now, I need to deploy this box as administration and monitoring. So, I put in the command "application reset-factory" to set it back to factory.Does it mean the ISE version of this box will still be at version 1.1.2 patch 5 and I will get a clean box to do whatever I want, similar to Cisco IOS of "write erase" and "reload" to have a clean box?
I'm trying to join a band new CSACS-1120 to our active directory without success. The process in it self should be pretty straigh forward, but so far no luck.
I've configured the relevant info under "Users and Identity Stores > External Identity Stores > Active Directory.
Active Directory Domain Name: xxx.com Username/Password : domain administrator account
When I test connection I get a info dialog "This machine is currently connected to domain xxx.com".After which I try to save changes which gives a reply ""This System Failure occurred: {0}. Your changes have not been saved. Click OK to return to the list page."
I've noticed that in the system log "show logging system tail" that I get a exception as soon as I enter the AD configuration page and subsequently every time I perform a action on that section.
Why the AD join keeps on failing and what the debug exception I'm getting means?
We got 2 Cisco ACS 5.2.0.26.10.Primary server as authentication server and log collector.Secondary server as authentication server. Replication is configured. url..."There are some exceptions to this usual setup, which you can handle as described below: If the ACS 5.3 primary server also functions as a log collector in your 5.3 deployment, you should promote any one of the secondary servers as primary server in the deployment. See Promoting a Secondary Server to Primary "
This exception matches with my case. I have to promote my secondary server as primary.I would have :Secondary server as authentication server and log collector.Primary server as authentication server. I think I have to deregister secondary from primary server..According to the guide, I have to upgrade the log collector server. "Step 1: Choose any secondary server to become a log collector:" I dont have another secondary server..