<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic ACS 4.1- shell command works under user but not group in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/acs-4-1-shell-command-works-under-user-but-not-group/m-p/1699292#M247421</link>
    <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This question might actually belong under tacacs server but it's only happening with the ACE.&amp;nbsp; I've configured tacacs on the 4710 and configured the tacacs server per the documentation. If I enter the shell:&amp;lt;context&amp;gt;*Admin default-domain under the group settings when I login with my tacacs ID my role is set to Network-Monitor.&amp;nbsp; If I set the shell in my specific tacacs ID I'm assigned the correct role as Admin.&amp;nbsp; We're running ACS ver 4.1 and the ACE is A4(1.1)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
    <pubDate>Mon, 11 Mar 2019 01:15:41 GMT</pubDate>
    <dc:creator>t.doherty</dc:creator>
    <dc:date>2019-03-11T01:15:41Z</dc:date>
    <item>
      <title>ACS 4.1- shell command works under user but not group</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-4-1-shell-command-works-under-user-but-not-group/m-p/1699292#M247421</link>
      <description>&lt;P&gt;Hi,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;This question might actually belong under tacacs server but it's only happening with the ACE.&amp;nbsp; I've configured tacacs on the 4710 and configured the tacacs server per the documentation. If I enter the shell:&amp;lt;context&amp;gt;*Admin default-domain under the group settings when I login with my tacacs ID my role is set to Network-Monitor.&amp;nbsp; If I set the shell in my specific tacacs ID I'm assigned the correct role as Admin.&amp;nbsp; We're running ACS ver 4.1 and the ACE is A4(1.1)&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 01:15:41 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-4-1-shell-command-works-under-user-but-not-group/m-p/1699292#M247421</guid>
      <dc:creator>t.doherty</dc:creator>
      <dc:date>2019-03-11T01:15:41Z</dc:date>
    </item>
    <item>
      <title>ACS 4.1- shell command works under user but not group</title>
      <link>https://community.cisco.com/t5/network-access-control/acs-4-1-shell-command-works-under-user-but-not-group/m-p/1699293#M247426</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;For the tacacs settings under the user settings make sure you select the radio button for "Use Group Level Setting" rather than just removing the av-pair.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Thanks,&lt;/P&gt;&lt;P&gt;Tarik&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Fri, 29 Jul 2011 07:49:04 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/acs-4-1-shell-command-works-under-user-but-not-group/m-p/1699293#M247426</guid>
      <dc:creator>Tarik Admani</dc:creator>
      <dc:date>2011-07-29T07:49:04Z</dc:date>
    </item>
  </channel>
</rss>

