Sunday, October 10, 2021

Cisco Local Password Rotation

Running around 1000 network devices on around 20 locations. Things are pretty controlled, when ISE is reachable there is no way of using local auth. Problem is our policy states that we should deliver local passwords to IT on site. Those passwords are site specific and are probably 10 year old.

Recently we found that someone was unplugging switch from network and making unauthorized changes and then putting it back.

I wonder if there is any tool like LAPS but for Cisco devices?



No comments:

Post a Comment