Support Support Downloads Knowledge Base Juniper Support Portal Community

Knowledge Base

Search our Knowledge Base sites to find answers to your questions.

Ask All Knowledge Base Sites All Knowledge Base Sites JunosE Defect (KA)Knowledge BaseSecurity AdvisoriesTechnical BulletinsTechnotes Sign in to display secure content and recently viewed articles

[ScreenOS] Local authentication of firewall administrator is failing after configuring external authentication



Article ID: KB29694 KB Last Updated: 29 Mar 2021Version: 2.0

This article describes the failure of local authentication of the firewall administrator after external authentication has been configured.


Customer has a root admin user that needs to be authenticated locally and other admin users that need to be authenticated by an external authentication server. However, after configuration of the external authentication server, the root admin user fails authentication.


This occurs when the remote auth server has been given a higher priority to authenticate over the local database.


Do the following using either the Web UI or the CLI.

Web UI:

  1. Go to  Configuration > Admin > Administrators > Remote Server Settings.
  2. Deselect the "Primary: The remote Auth server will have priority" check box.


Enter the following commands:

unset admin auth remote primary

Modification History:
3-29-21: Minor non-technical edits.
Comment on this article > Affected Products Browse the Knowledge Base for more articles related to these product categories. Select a category to begin.

Getting Up and Running with Junos

Getting Up and Running with Junos Security Alerts and Vulnerabilities Product Alerts and Software Release Notices Problem Report (PR) Search Tool EOL Notices and Bulletins JTAC User Guide Customer Care User Guide Pathfinder SRX High Availability Configurator SRX VPN Configurator Training Courses and Videos End User Licence Agreement Global Search