The hwtacacs-user change-password hwtacacs-server command enables the device to change the passwords saved on the HWTACACS server.
Parameter |
Description |
Value |
---|---|---|
template-name |
Specifies the name of an HWTACACS server template. |
The HWTACACS server template must already exist. |
Usage Scenario
To change the password saved on the HWTACACS server, users can run the hwtacacs-user change-password hwtacacs-server command on the device. You do not need to change the configuration on the HWTACACS server.
Precautions
Users are HWTACACS authenticated and the HWTACACS server template is configured.
Users can run this command to change the passwords only when the user names and passwords saved on the HWTACACS do not expire. When a user whose password has expired logs in to the device, the HWTACACS server does not allow the user to change the password and displays a message indicating that the authentication fails.
The system wait period is 30 seconds. If the TACACS server does not receive the user name, new password, or confirmed password from the user within such a period, it terminates the password change process.
Users can also press Ctrl+C to cancel password change.
HWTACACS users who pass AAA authentication can use the hwtacacs-user change-password hwtacacs-server command to change the passwords before the passwords expire. If a user needs to run this command to change the passwords of other users, the user must have the system rights.