<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Adding a user role for SAN switches in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/adding-a-user-role-for-san-switches/m-p/727668#M409110</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ed,&lt;/P&gt;&lt;P&gt;Nice to know that. Please mark it resolved so other can benifit from it.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Thu, 23 Aug 2007 16:01:46 GMT</pubDate>
    <dc:creator>Jagdeep Gambhir</dc:creator>
    <dc:date>2007-08-23T16:01:46Z</dc:date>
    <item>
      <title>Adding a user role for SAN switches</title>
      <link>https://community.cisco.com/t5/network-access-control/adding-a-user-role-for-san-switches/m-p/727665#M409107</link>
      <description>&lt;P&gt;I am trying to find the correct location in ACS 3.3 to add the following: roles="network-admin".  We have our SAN switches using Tacacs+.  When a user other than admin logins, you get the role as "network-operator".  This doc Cisco MDS 9000 Family Troubleshooting Guide, Release 3.x explains the role if you are using IOS/PIX Radius.  Thank you.&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 22:21:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/adding-a-user-role-for-san-switches/m-p/727665#M409107</guid>
      <dc:creator>edward.gillston</dc:creator>
      <dc:date>2019-03-10T22:21:15Z</dc:date>
    </item>
    <item>
      <title>Re: Adding a user role for SAN switches</title>
      <link>https://community.cisco.com/t5/network-access-control/adding-a-user-role-for-san-switches/m-p/727666#M409108</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Hi Ed,&lt;/P&gt;&lt;P&gt;Here is the link,&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;A class="jive-link-custom" href="http://www.cisco.com/en/US/docs/storage/san_switches/mds9000/sw/rel_2_x/san-os/configuration/guide/cradtac.html" target="_blank"&gt;http://www.cisco.com/en/US/docs/storage/san_switches/mds9000/sw/rel_2_x/san-os/configuration/guide/cradtac.html&lt;/A&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;If you search for:&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;TACACS+ custom attributes can be defined on an Access Control Server (ACS) for various&lt;/P&gt;&lt;P&gt;services (for example, shell). Cisco MDS 9000 Family switches require the TACACS+ custom&lt;/P&gt;&lt;P&gt;attribute for the service shell to be used for defining roles.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Cisco ACS TACACS+ &lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;    shell:roles="network-admin"&lt;/P&gt;&lt;P&gt;    shell:roles*"network-admin"&lt;/P&gt;&lt;P&gt;    cisco-av-pair*shell:roles="network-admin"&lt;/P&gt;&lt;P&gt;    cisco-av-pair*shell:roles*"network-admin"&lt;/P&gt;&lt;P&gt;    cisco-av-pair=shell:roles*"network-admin"&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;On the ACS, if you go to: Interface configuration, TACACS+ (Cisco IOS), place a check nex to: " Display a window for each service selected in which you can enter customized TACACS+ attributes".&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Then go into Group Setup and define the role information according to the above attributes.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Hope that helps&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Regards,&lt;/P&gt;&lt;P&gt;~JG&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 23 Aug 2007 14:57:58 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/adding-a-user-role-for-san-switches/m-p/727666#M409108</guid>
      <dc:creator>Jagdeep Gambhir</dc:creator>
      <dc:date>2007-08-23T14:57:58Z</dc:date>
    </item>
    <item>
      <title>Re: Adding a user role for SAN switches</title>
      <link>https://community.cisco.com/t5/network-access-control/adding-a-user-role-for-san-switches/m-p/727667#M409109</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;That was the solution.  Thank you&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 23 Aug 2007 15:59:19 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/adding-a-user-role-for-san-switches/m-p/727667#M409109</guid>
      <dc:creator>edward.gillston</dc:creator>
      <dc:date>2007-08-23T15:59:19Z</dc:date>
    </item>
    <item>
      <title>Re: Adding a user role for SAN switches</title>
      <link>https://community.cisco.com/t5/network-access-control/adding-a-user-role-for-san-switches/m-p/727668#M409110</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;Ed,&lt;/P&gt;&lt;P&gt;Nice to know that. Please mark it resolved so other can benifit from it.&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Thu, 23 Aug 2007 16:01:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/adding-a-user-role-for-san-switches/m-p/727668#M409110</guid>
      <dc:creator>Jagdeep Gambhir</dc:creator>
      <dc:date>2007-08-23T16:01:46Z</dc:date>
    </item>
  </channel>
</rss>

