Cisco AAA/Identity/Nac :: Upgrade From ACS 4.2 To 5.1?
Jan 4, 2012We only need to the Local User info to be transferred to the Ver5.1.
View 15 RepliesWe only need to the Local User info to be transferred to the Ver5.1.
View 15 RepliesIs it possible to upgrade the CSACS-1121-UP-K9 to be a non upgrade part? We were going to upgrade from a Windows 4.x to the above Appliance (version 5.x) but there is now a reason to keep the old Windows version running therefore we cannot give the new Appliance the old ACS's licenses?!So we should have (with hindsight) bought a fresh version of the ACS 5.x rather than an upgrade.
View 1 Replies View RelatedI'm not able to find any clear process/documentation on how to upgrade 5.1 to 5.4, so I have assumed that it will be a 2 stage process...Upgrade from 5.1 to 5.3 (or 5.2) Then upgrade to 5.4?
View 9 Replies View RelatedAny issues migrating ACS 4 to 5?
View 3 Replies View RelatedI have some requirement where I need to upgrade the ACS 4.2 to 4.3, are there many upgrades available from Cisco on this ?
View 5 Replies View RelatedI want to upgrade the Cisco ACS ver from 4.0 to 4.1.1.24 running on VM envoinment with primary and scondary server. I have tried to find documents related this upgradation. 
My target is:
4.0====4.1.1.24====5.3
Secondly I wanted to know that this upgradation would possible for VMs or not. and this upgratation (4.0 to 4.1.1.24) could be possible on demo license?. because I have orderd to Cisco L-CSACS-53VMUP-K9 and CON-SAS-CSACS3V.?
I'wont to upgade my ACS server 5.0.0.21 to 5.1 . I wont to use Active Directory . it's seem that in my curent version AD is not supported !
View 12 Replies View RelatedI'm currently running ACS 5.3 Patch 7 in a VM on VMware ESXi. I download the application upgrade bundle, and placed it in my SFTP repository, and ran "application upgrade filename repository name". It throws an error that the manifest file is not found in the bundle. 
 
I tried putting the ACS.gz file in an FTP repository, and even in an ISO file to attach to the VM. In all cases I receive this same error.I did verify the md5sum on the file to make sure it wasn't corrupted..
I want to upgrade the acs 5.1 in distributed system. We have one hub/ primary ACS and two other spoke / secodary acs. I have following querry. Will it be possible to upgrad only one Secondary server.>Will updated secondary ACS will able to sych it configuration with primary acs running on older version?Will updated secondary acs will retain the current configuration and authenticate the client.?
View 4 Replies View RelatedI try  upgrade ACS 5.3.0.40 to new version 5.4.0.46. Everything looks ok:
 
ACS-machine/acsadmin# application upgrade ACS_5.4.0.46.tar.gz rep01 Do you want to save the current configuration ? (yes/no) [yes] ?  Generating configuration. Saved the running configuration to startup successfully
 
% CARS Install application required post install reboot...
 
Broadcast message from root (pts/0) (Thu Dec  6 23:36:41 2012):
 
The system is going down for reboot NOW!
 
Application upgrade successful 
 
But ACS machine (vmware instance) can't boot with this result: Volume group "smosvg" not found. (for details see attachment)
I have installed ACS  Windows 2003 R2 Services Pack 2.
 
I am upgrading of version 4.1.1.23 to version 4.2.1.15. Recommended by Cisco.
 
Before of update everthing works fine. 
 
After of upgrade, this does not authenticate user, sends the next message "External user not found", "Authentication session invalidated" and "internal error".
 
The mapping is ready. annex image.
I am trying to upgrade ISE from 1.1.0 to 1.1.2.145 but failed. Find the details below.
 
DR-ise-pdp-01/admin# application upgrade ise-appbundle-1.1.2.145.i386.tar.gz ISE1
Save the current ADE-OS running configuration? (yes/no) [yes] ? 
Generating configuration...
Saved the ADE-OS running configuration to startup successfully
Initiating Application Upgrade...
Stopping ISE application before upgrade...
Running ISE Database upgrade...
% Application upgrade failed. check logs for more details.
I have a question about upgrade NAC Module, I follow standalone procedure to do the upgrade but I wonder about the upgrade file should I use because on the Cisco site I didn't find the upgrade file from 4.8.0 to 4.8.2.
 
what I found is nme-nac-upgrade-4.8_2-from-4.6.x.tar.gz ??!!!
 
So my question If I use the NAC upgrade file I was used for upgrade the CAM & CAS applaiances 
Currently I am running Cisco ACS 3.2 ,now wanted to upgrade with the latest version along with the Authentication using AD , process/Document to upgrade the same .
View 1 Replies View Relatedhow to  upgrade fromACS 4.0 to 4.2.1  with data restoring .
 
Currently i am running with 4.0 i need to upgrade to 4.2.1 windows.
I upgraded my ACS 4.2 on a Windows 2003 R2 Standard Edition SP2 Server to 4.2.1.15.9. The server seems to be running, I see that it is able to authenticate and authorize my logins and commands on Cisco devices. However when I try to launch the web access from the desktop of the server either with https://<ip adress>:2002 or https://127.0.0.1:2002 I get a message that the website cannot be displayed. When I nmap the server I see that port 2002 is open.
 
Any special trick how to reenable my web access?
we have a Cisco ACS 1113 SE running v4.0.1.44 and are trying to upgrade it to v.4.2.0.124 following the instructions to upgrade it to v4.1.1.24 first.
 
We are using the following CD "ACS SE Overall Upgrade CD ACS 3.3.4 and 4,1,1,24 Upgrades"
 
We can download the 4.1.1.24 image to the ACS appliance via distribution server but the upgrade fails- we obtained the following console output when attempted upgrade was tried;
 
Upgrade package was not verified
Applying this upgrade package may corrupt the appliance
Continue at your own risk!
[Code].....
I'm trying to upgrade my ACS 5.3 (patch 7) to ACS 5.4 and I've downloaded the application bundle from Cisco. I'm transferring the app bundle via FTP towards the VM containing ACS, yet I ALWAYS get %Manifest File not found in bundle. I've opened the bundle and  found the manifest .xml inside.
 
I've double verified MD5 checks, size files, re-downloaded everything, even copied it to the local disk of the appliance. Also browsed through this forum to see that there are people having the same problem with other ACS version upgrades and besides re-downloading and using FTP there isn't a specific solution. I'm always getting this error. I know that it must be possible to do upgrade, but I'm stuck.  I do see on the FTP server logs that the file gets transferred, but as pretty much as soon as it finishes transferring (not enough time in my view to extract a 1.2 GB file) I get an error 
 
I'm doing the:
 
application upgrade ACS_5.4.0.46.tar.gz FTP
(...)
%Manifest file not found in the bundle
I have an ISE 3395 appliance that comes with ISE version 1.1.1.I've decided to upgrade it to version 1.1.2 patch 5 (latest patch version) and played with it for a few days.  I set it up as a stand-alone box.
 
Now, I need to deploy this box as administration and monitoring.  So, I put in the command "application reset-factory" to set it back to factory.Does it mean the ISE version of this box will still be at version 1.1.2 patch 5 and I will get a clean box to do whatever I want, similar to Cisco IOS of "write erase" and "reload" to have a clean box?
After upgrading to 5.2.0.26 I no longer seem to have a dashoard on the ACS View/Monitoring section.
View 5 Replies View Relatedwhat the "ACS 5.2 application upgrade package" is? I've seen this package on the download software area but couldn't find any document on this.
View 2 Replies View RelatedWe got 2 Cisco ACS 5.2.0.26.10.Primary server as authentication server and log collector.Secondary server as authentication server. Replication is configured. url..."There are some exceptions to this usual setup, which you can handle as described below: If the ACS 5.3 primary server also functions as a log collector in your 5.3 deployment, you should promote any one of the secondary servers as primary server in the deployment. See Promoting a Secondary Server to Primary "
  
This exception matches with my case. I have to promote my secondary server as primary.I would have :Secondary server as authentication server and log collector.Primary server as authentication server. I think I have to deregister secondary from primary server..According to the guide, I have to upgrade the log collector server. "Step 1: Choose any secondary server to become a log collector:" I dont have another secondary server..
This weekend we have upgraded the ios on quite a few switches on a larger site, the site is a mix of 2960 and 3560 switches and the previouse ios versions were 12.2.44 on most switches but some had an older 12.2.25.On monday when we came into work we got a call that most of the ports on these switches were an amber color and most people could't use the network.After some investigation we discovered that we had a problem with dot1x so for a quick solution we just removed it from the switches and restarted all the ports with no dot1x enabled,[code]
View 6 Replies View RelatedI have successfully installed the 5.0.21.9 patch and ADE-OS 1.2 update but when I attempt the 5.1 install via "app install ACS_5.1.0.44.tar.gz local" I get the error "Manifest file not found in the bundle."
 
Here is a debug of the install:
HOST/admin# app install ACS_5.1.0.44.tar.gz local Do you want to save the current configuration ? (yes/no) [yes] ? Generating configuration...Saved the running configuration to startup successfully6 [30662]: application:install cars_install.c[195] 
[Code].....
 
I created the repository by TFTPing the file to disk:/Upgrade and pointing a repository to disk:/Upgrade. I verified the checksum of the file as it sits on my TFTP server and also manually extracted the file to verify the manifest.xml file is actually there.
I am facing an issue with several ACS appliances (some other work well) when upgrading to version 5.2.0.26.8.
 
When I launch the command acs patch install, I receive the following error message (we use FTP):
 
Failed to copy file '5-2-0-26-8.tar.gpg' from repository PatchRepository 
(Error -302)
% Error: patch install 5-2-0-26-8.tar.gpg from repository PatchRepository - transfer failed (code 1)
  
 This happens on three appliances but I could successfully upgrade 4 other appliances.
  
 What is the reason behind this error code ? What could I do solve it ? I have already tried to create another repository on another server, without success.
We upgraded a CSACS-1121 from ACS 5.2 to ACS 5.4 with CLI Application upgrade ACS_5.4.0.46.0a.tar.gz FTP After ACS reboot, services never start... After 15 hours, we always get same message: 
 
ACS/admin# show application status acs 
Application initializing...
Status is not yet available.
Please check again in a minute.
  
We installed patch 5-4-0-46-2.tar.gpg but we got same issue for 2 hours ...What could I do? 
After ACS upgrade from 5.2 to 5.3 we have noticed that backup files are significantly smaller in size. For example before the upgrade they were:
  
285633099 2011-10-23 22:01 Meduza-ACS-111023-2200.tar.gpg
285809254 2011-10-24 22:01 Meduza-ACS-111024-2200.tar.gpg
 
And after upgrade:
 
124234429 2011-10-25 22:00 Meduza-ACS-111025-2200.tar.gpg
124234425 2011-10-26 22:00 Meduza-ACS-111026-2200.tar.gpg
  
What could cause this behavior? How we can be sure if backup files have been regular after the upgrade?
ACS had been integrated with Active Directory before ACS upgrade to 5.3. After the ACS 5.3 upgrade users aren’t able to login to AAA devices occasionally. Error message is:
 
{AuthenticationResult=Error; Type=Authentication; Authen-Reply-Status=Error; }
 
24429 Could not establish connection with Active Directory
 
At the same time, when this issue occurs, ACS connection to AD works fine (checked with Users and Identity Stores> External Identity Stores > Active Directory “Test Connection”)
i try to upgrade acs 5.2 with the patch 5-2-0-26-1.tar.tar.Firstly it is not the correct extension when downloading the file from the download software area.then when I enter "patch install 5-2-0-26-3.tar.tar FTP" I get the following error message:
 
% Manifest file not found in the bundle
 
I believe the file is not corrupted. 
Am I entitle to upgrade from 5.1 to 5.2 by having smarnet on my 1120 Secure ACS Appliance?
View 1 Replies View RelatedI am trying to upgrade a brand new ISE 3395 from 1.0.3.337 to 1.0.4 (latest).  It keeps failing with % Manifest file not found in the bundle Here is the output:
company-ise-01/admin# application upgrade ise-appbundle-1.0.4.573.i386.tar.gpg ftp
Save the current ADE-OS running configuration? (yes/no) [yes] ?
Generating configuration...
Saved the ADE-OS running configuration to startup successfully
Initiating Application Upgrade...
% Manifest file not found in the bundle 
[code]...
 
I can't find anything about this for ISE, although there are a lot of topics for the same error for ACS.
I have upgraded Cisco ACS from 4.1 to 4.2, I have Cisco Access Control 1113 apliance, as soon as I upgraded I am getting error in failed logs "Authen session timed out: Challenge not provided by client", what is wring with this?
View 4 Replies View RelatedI have two Windows 7 computers and neither one will successfully upgrade a 1242 AP to LWAP. However, I go to a coworker's XP machine and run the tool without issues. On Windows 7 I keep receiving the error message of ACL or Firewall is blocking. I have added rules and then even tried disabling the firewalls completely on both computers and still no success.
View 7 Replies View Related