> Source: [sk143732](https://support.checkpoint.com/results/sk/sk143732)

# sk143732 - RADIUS/TACACS+ users fail to change the default admin password when running the First Time Wizard

| Property | Value |
|----------|-------|
| Solution ID | sk143732 |
| Date Created | 2019-01-06 |
| Last Modified | 2021-01-07 |
| Technical Level | General |
| Products | Security Gateway, Security Management Server |
| Versions | R82.10, R82, R81.20, R82.10, R82, R81.20, R82.20 |
| OS | Gaia |

## Symptoms

- * The built-in administrator configures RADIUS/TACACS+ server authentication on the device and grants a RADIUS/TACACS+ user permission to run the First Time Wizard.
* RADIUS/TACACS+ user navigates to the page "Authentication Details" and changes the default admin password. Changing the default admin password does not take effect after finishing the First Time Wizard.
* The built-in administrator gets the message "Access denied" when being authenticated with the new password.

## Cause

The First Time Wizard is configured to change the password of the logged-in user instead of the password of the built-in administrator.

## Solution

This problem was fixed. The fix is included in:

* [Check Point R80.20](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk122485)

Check Point recommends to always upgrade to the most recent version   
([upgrade Security Gateway](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doShowproductpage&productTab=overview&product=435) / [upgrade Security Management Server](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doShowproductpage&productTab=overview&product=184) / [upgrade Multi-Domain Security Management](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doShowproductpage&productTab=overview&product=166)).

<br />

<br />

### Workaround 1

1. Log in to the WebUI as a built-in administrator.  

   ![](https://sc1.checkpoint.com/sc//SolutionsStatics/sk143732/011901070643.png)  

2. Run the wizard to complete the first time configuration of the system.

### Workaround 2

1. Login to the console as a RADIUS/TACACS+ user, or built-in administrator.  

   ![](https://sc1.checkpoint.com/sc//SolutionsStatics/sk143732/021901070643.png)  

2. Login to Clish.  

3. Change the default admin password: **Hostname\> set user admin password**   

4. Save the configuration: **Hostname\> save config**   

5. Login to the WebUI as a RADIUS/TACACS+ user.  

6. Run the wizard to complete the first time configuration of the system.

### Related Solutions

* [sk101573 - How to configure Gaia OS to work with a TACACS+ server](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk101573)
* [sk69703 - TACACS+ support in Gaia OS](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk69703)
* [sk92486 - Adding Multiple TACACS+ Servers in Gaia+](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk92486)
* [sk98733 - Best Practices - Configuring Cisco ACS 5 server for TACACS+ authentication with Gaia OS](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk98733)
* [sk72940 - How to configure RADIUS server for authentication on Gaia OS](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk72940)
* [sk93309 - Troubleshooting RADIUS authentication related issues in Gaia](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk93309)
* [sk105542 - How to configure a RADIUS server on Cisco ACS for authentication with Gaia OS](https://supportcenter.checkpoint.com/supportcenter/portal?eventSubmit_doGoviewsolutiondetails=&solutionid=sk105542)

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
