Cisco AAA/Identity/Nac :: ACS 5.1 Backup Restore?
Oct 20, 2011
I've been setting up building and testing our new ACS 5.x boxes and I've been running into a spot of bother with the backup restore feature. This most likely due to my unfamiliarity with the tool.
As part of my testing for Backup/Restore, I first backup the data using the Removal and backup tool in Secure ACS View (found under data management. I then confirm that the new FULL backup has been populated my test repository and is available in the restore feature. (also under Data Management) My next step is to create a few test Network Device Groups, Identity groups, and users Then I go back to the restore feature select the Back up file I just created, I also check the box Skip View Database backup before Restore and hit the restore button.
The box goes through the expected steps including a reload. When it comes back up I would expect the test users, groups etc I created after the last backup to be gone as they did not exist at that time. Although I find the opposite is true. Any settings I made after the last backup are still present. I do not have incremental backups enabled.
I essentially want to test a backup of the database of users and groups/rules etc make changes and then restore that database to the previous backed up configuration.
View 2 Replies
ADVERTISEMENT
Oct 3, 2011
We are trying to make a restore from the backup done on ACS version 5.1 to a new appliance running ACS5.2 Before doing it I found this note in Cisco ACS user guide:
Note: You cannot back up data from an earlier version of ACS and restore it to a later version. Backup and restore must be performed on the same version of ACS. If you need the data on a different version of the ACS, you can perform an upgrade after you restore the data. Refer to the Installation and Setup Guide for Cisco Secure Access Control System 5.1 for more information on upgrading ACS to later versions.
How should I understand it? This note has conflicting statements. We can't restore to a later version but if you need data on a different version of ACS you can perform an upgrade AFTER YOU RESTORE the data. Doesn't it mean that the restore will still work? How would I do the upgrade to version 5.2 or even version 5.3 that was announced to be released very soon? I didn't find anything on the software upgrade in ACS5.1 guide.
View 4 Replies
View Related
Apr 11, 2012
We have cisco works LMS 3.1 and the server have very problems, we need format the server and reinstall the Cisco Works, when I doin backup and restore of data LMS We lost the licenses? or when we restore the data in the server we have the same licenses? or get the new licenses to cisco?
View 5 Replies
View Related
Aug 21, 2012
I am facing a failed issue when restoring the WCS Database. Below is the error i get, does any one out there facing it before?
#######################################
[root@egwgwcs WCS7.0.220.0]# ./Restore
Please enter the full path of the backup file name: /opt/WCS7.0.220.0/Backup_File/WCS_Aug2012.nmsbackup
Untaring the backup file...
Failed to untar backup file. Exception: invalid stored block lengths
Restore database failed.
#######################################
View 1 Replies
View Related
Jan 8, 2012
I want to restore a backup from c2960 to other one.Why is recommended to remove any security commands, like AAA?
View 2 Replies
View Related
Mar 9, 2012
We want to take the current configuration backup of the LMS 4.0 (Installed on Win 2003 Enterprise) and restore the same to a new windows machine (Win2003 standard edition).
View 1 Replies
View Related
Oct 10, 2011
I have a Cisco ASA 5505 as a BOVPN endpoint using certificates. The config is complete and I now need to back it up and restore to a cold standby Cisco ASA 5505 that will sit on the shelf until something goes wrong.
Problem is I cannot restore my certifcates to the standby.
I have tried the backup and restore wizard in ASDM and to be honest it didn't work.
View 2 Replies
View Related
Jan 10, 2012
I recently tested the process for a customer of defaulting a Cisco WLC to factory configuration and then restoring the configuration from Cisco NCS. It was not seamless to say the least and I wonder if I have just gone about it the wrong way.
Have have set the NCS platform to configuration sync with the 5508 controllers at 04:00 every day and prior to the controller defaulting I ensured that NCS also reported that the config was in sync. I have also set NCS to complete a tftp backup of the controller every night 23:00 - interestingly though I have no idea where this is stored on the NCS platform ( a VM appliance ) or what it's file name is.
Anyway my experiences where as follows:-
1. defaulted WLC and via serial CLI ended up at the configuration wizard.
2. Set the correct LAG, management IP, host name that NCS knew this controller by.
3. To test things just created a dummy WLAN ( SSID ) as I assumed this would be overwritten ( big mistake ! ).
At this point I connected the controller to the network and tried to restore the configuration from the config sync version.
First problem - you have to remember to set up the SNMP community string you were using as it is needed by the configuration sync process. After adding this to the controller I could push the configuration to the controller.
Second problem - failed to add the first WLAN from the backup as I have added the temporary dummy W LAN via the wizard and NCS reported a conflict. So had to delete WLAN ID 1 from the WLC GUI directly and then the config push no longer reported this error.
Third problem - for some reason did not add the TACACS server details - reported the error that it could not added them. I manually added these via a template via NCS and all was well.
Fourth problem - all but the first WLAN was in the disabled state - had to re-enable all of the WLANs.
Fifth problem - any default items I had disabled or removed have not been saved - therefore I have removed the public and private SNMP communities - but these were still on the WLC after the restore. I have disabled unused ports not in the LAG as they show an error in NCS - these where not disabled after the restore.
So all in all not a very satisfactory restore process from NCS to an defaulted WLC ( meant to simulate to the customer what would be needed if they had to replace a controller due to hardware failure ).
View 1 Replies
View Related
Feb 10, 2011
If the hostnames are the same - can I restore the backup file from a wcs 5.2.148.0 instance on a different wcs instance running wcs 6.0.196.0?
View 1 Replies
View Related
Dec 20, 2011
Is there anyway to backup and restore the spams quarantine to another ironport c170?
View 1 Replies
View Related
Mar 27, 2010
I have a WAG160N and its seems to have reset to factory defaults, no idea why, but when trying to restore the Configuration Backup all I get is "Restore Failure <Unmatched pid>"
View 2 Replies
View Related
Jun 3, 2012
I'm replacing an older (& failing) RVS4000 v1 with a new V2. I need to minimize downtime. Will a config backup from the old v1 restore properly to a new v2 (all have newest firmware)? There are a lot of tweaks including several VPNs and to do it all manually is not desirable.
View 2 Replies
View Related
Dec 21, 2011
I need to backup my ASA 5505 configuration and restore it to default, then I'll configure manually the new config, but if something doesn't work I want to restore the backup made before.
I tried the "copy run tftp" command, and it always answers the same: Result of the command: "copy run tftp" [code] I read everywhere its supossed to prompt asking me tftp server address and file name.
View 7 Replies
View Related
May 8, 2012
I'm trying to move from a faulty SRP527 to SRP 547 - I tried a Restore from Backup, but it doesn't work.So start from fresh, and I'm having an issue trying to add a 2nd SSID to a VLAN...
I keep getting the error:
"FAILED! SSID 2 has joined another VLAN"
Except it hasn't... its not assigned to any VLAN...
View 2 Replies
View Related
May 21, 2012
How can we restore ACS config from an existing backup file, in an ACS cluster deployment? is it through CLI? with"restore"or"acs restore" command? and should I restore only the ACS config or both ACS and ADE-OS config?
View 4 Replies
View Related
Oct 20, 2011
have some problems with setting up jobs for the backup running config on my switches. Have RW and RO contact with everyone and can change the config in editor, but do not get config.txt
View 1 Replies
View Related
Apr 18, 2013
I need to know the command to take the Backup and Restore of IOS Image of 6513 through tftp server.
View 6 Replies
View Related
Jul 5, 2010
I'm trying to do a restore from one v5.1 box to another. The file is sent via ftp from the configured repository but when the file is sent I get an error saying failed to unpack.
My restore box is running an evaluation version at level 5.1.0.44.3
View 1 Replies
View Related
Jun 7, 2011
I have a problem with the router Linksys RV042, I made a backup of it that contains a file with the extention .exp Now we have buy a new Rv042 made by cisco and the backup file is .config the question is how I convert the .exp file to a .config file so I can Restore the backup in to the new router?
View 1 Replies
View Related
Jun 11, 2009
we are trying to restore an ACS SE backup into an ACS Windows but we get the message error: "The backup file selected is either not a Cisco Secure V4.2 backup file or it has been corrupted". The version/patch level is the same in both 4.2(0.124). I think that is possible (restore SE in W2000), isn't it?.
View 3 Replies
View Related
Nov 27, 2011
I tried to backup ACS 5.1 but i found error messages as below
acs backup25Nov11 repository 25Nov11Repository
% Repository not found
% Error: Invalid repository name 25Nov11Respository
Please use a configured repository.
View 2 Replies
View Related
Jun 8, 2012
How to backup the configuration on cisco acs 5.2 and how to restore it , if some thing wrong happened
View 7 Replies
View Related
Mar 10, 2013
Cisco ACS 5.x appliance?How to back up Config?What is best way, via TFTP? COPY Startup-config tftp:?COPY Running-config tftp:?I currently use Solarwinds CatTolls to back my Cisco Switches, can I use this for Cisco ACS also?
View 3 Replies
View Related
May 19, 2013
we have ACS 4.1 appliance and will do upgrade to 4.2. We need backup user database and system settings.via Gui I am not sure what all we backed up - dmp file seems to be only encrypted user databse but it can be crypted back up file.
How is possible do complete backup of current machine (user database and system config)? Is it possible via Gui or has to be done CLI access?After upgrade will be on machine previous config and database or or will be appliance completelly re-imaged?
View 1 Replies
View Related
Sep 4, 2011
I have ACS 5.2 in standalone mode in operation and need not incorporating a second server for high availability ACS, the new ACS is a version 5.1
What should I do first, upgrade the ACS version 5.2 and created the high availability or high availability and get up after the upgrade?
View 2 Replies
View Related
Jun 6, 2012
Due to some wrong access policy applied in the administration control settings. GUI access is not functioning. So we need to take a backup thru CLI mode using FTP server. I have tried using the backup command in the console & taken the backup using the following steps. But the backup file is less than 1kb. I need the exact Db backup to be taken.
Step 1 Log in to the ACS SE. For more information, see Logging In to the Solution Engine from a Serial Console.Step 2 At the system prompt, enter backup and press Enter.Tip You can enter the following parameters after the command or in response to subsequent prompts: [server] [username] [filepath]Step 3 At the Enter FTP Server Hostname or IP Address: prompt, enter the FTP server IP address or hostname, and press Enter.Step 4 At the Enter FTP Server Directory: prompt, enter the FTP server directory pathname, and press Enter.Step 5 At the Enter FTP Server Username: prompt, enter the FTP server username and. press Enter.Step 6 At the Enter FTP Server Password: prompt, enter the FTP server password and, press Enter.Step 7 At the File: prompt, enter the name that you want to give the backup file, and press Enter.Step 8 At the Encrypt Backup file? <Y or N>: prompt, enter Y to encrypt the backup file or N not to encrypt it, and press Enter.Caution This procedure interrupts the use of the ACS SE for AAA services.Step 9 If you entered Y to encrypt the backup file, at the Encryption Password: prompt, enter a password and then press Enter.Result: The console displays:Backing up now . . .
All running services will be stopped and restarted automatically.Are you sure you want to proceed? <Y or N>Step 10 To proceed, enter Y and press Enter.
View 5 Replies
View Related
Jan 28, 2012
When I'm trying to make backup in ACS5.1(in log collector node) it gives me the following error:
FullBackupOnDemand-Job Incremental Backup Utility System Wed Jul 13 16:50:23 EEST 2011 Incremental Backup Failed: CARS_APP_BACKUP_FAILED : -404 : Application backup error Failed,I did it via Monitoring Configuration -> System Operation -> Removal and Backup and then "Backup now" bottom.
I tried to restart ACS services through cli (application stop/start) and different repositories (ftp, tftp) but without success.
View 2 Replies
View Related
Feb 8, 2012
I have ACS 4.2 on vmware machine, everything is working fine. Automatically backup is already set on local machine, but the thing is, i want to configure automatically backup on my file server (ex. \1.1.1.1acsbackup). Even though i have defined the acsbackup folder through map drive but no success. when i define the above string in the backup location directory, it shows an error (no directory exists). How do i configure file server or map drives on acs & save daily backup on fileserver
View 1 Replies
View Related
Aug 15, 2012
When doing a backup on any of the ACS 5.x appliances by default the backup is encrypted with PGP. What password is used for that? Is it configurable?
View 3 Replies
View Related
Feb 21, 2012
We have ACS 5.3, and trying to set up sftp backup on freesshd server. SSH connection works, but ACS cannot copy backup file to sftp server, we get following errors:
Acs.MGMT.ACSVIEW Backup failed: CARS_XM_SSH_CONNECT : -306 : SSH connect error
FTP backup works fine.
View 1 Replies
View Related
Apr 5, 2011
I am not able to backup ACS 5.x server by means of SFTP protocol. We use ACS 5-2-0-26-2. My configuration of repository is:
repository SFTP
url sftp://x.x.x.x/home/user
user user password hash 455ad
command 'backup acs01 repository SFTP' does not work and I receive the following error message on ACS server:
%SSH connect error
On my sftp server I can find the following error messages:
Apr 6 06:57:46 CR01 sshd[8561]: Accepted password for user from 10.20.86.72 port 47924 ssh2Apr 6 06:57:46 CR01 sshd[8563]: Received disconnect from 10.20.86.72: 11: disconnected by user
How to successfully performed backup by means of SFTP protocol? Do I need any other configuration settings except repository? Do I need to store my SSHD RSA key to ACS? I am able to copy files using SFTP from other computers, so it seems that SFTP server is set correctly.
View 2 Replies
View Related
Jul 12, 2011
When I'm trying to make backup in ACS5.1(in log collector node) it gives me the following error:
FullBackupOnDemand-Job Incremental Backup Utility System Wed Jul 13 16:50:23 EEST 2011 Incremental Backup Failed: CARS_APP_BACKUP_FAILED : -404 : Application backup error Failed
I did it via Monitoring Configuration -> System Operation -> Removal and Backup and then "Backup now" bottom.
I tried to restart ACS services through cli (application stop/start) and different repositories (ftp, tftp) but without succes.
View 8 Replies
View Related
Jan 20, 2013
I had ACS 5.2 ( Evalution License ) setup installed on VMware with patch 11 when I try to restore earlier backup of ACS gives me error "Cannot find acsbackup_instance.log in the backup file"
I am using Filezilla FTP sever for backup transfer.
View 5 Replies
View Related