<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: AAA: ACS 4.1 Enable SSH access while diable console access f in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/aaa-acs-4-1-enable-ssh-access-while-diable-console-access-for/m-p/1212261#M419074</link>
    <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Alan&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I do not believe that it is possible to modify the request to the same&amp;nbsp;authentication server based on which interface the login attempt comes from. If you set it up so that authentication of console was one server and authentication for VTY was a different server, then I believe that you could get this to work. But if it is the same authentication server for both console and VTY then I do not believe that you can treat the same user differently based on which interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rick&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
    <pubDate>Sun, 01 Feb 2009 22:53:05 GMT</pubDate>
    <dc:creator>Richard Burts</dc:creator>
    <dc:date>2009-02-01T22:53:05Z</dc:date>
    <item>
      <title>AAA: ACS 4.1 Enable SSH access while diable console access for same user</title>
      <link>https://community.cisco.com/t5/network-access-control/aaa-acs-4-1-enable-ssh-access-while-diable-console-access-for/m-p/1212260#M419072</link>
      <description>&lt;P&gt;&amp;lt;p&amp;gt;Hello,&amp;lt;/p&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;lt;p&amp;gt;Is it possible to enable SSH access while diable console access for same user with Radius server on ACS 4.1&amp;lt;/p&amp;gt;&lt;/P&gt;&lt;P&gt;&amp;lt;p&amp;gt;Alan&amp;lt;/p&amp;gt;&lt;/P&gt;</description>
      <pubDate>Sun, 10 Mar 2019 23:18:48 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/aaa-acs-4-1-enable-ssh-access-while-diable-console-access-for/m-p/1212260#M419072</guid>
      <dc:creator>apocalypse_nsl</dc:creator>
      <dc:date>2019-03-10T23:18:48Z</dc:date>
    </item>
    <item>
      <title>Re: AAA: ACS 4.1 Enable SSH access while diable console access f</title>
      <link>https://community.cisco.com/t5/network-access-control/aaa-acs-4-1-enable-ssh-access-while-diable-console-access-for/m-p/1212261#M419074</link>
      <description>&lt;HTML&gt;&lt;HEAD&gt;&lt;/HEAD&gt;&lt;BODY&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Alan&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;I do not believe that it is possible to modify the request to the same&amp;nbsp;authentication server based on which interface the login attempt comes from. If you set it up so that authentication of console was one server and authentication for VTY was a different server, then I believe that you could get this to work. But if it is the same authentication server for both console and VTY then I do not believe that you can treat the same user differently based on which interface.&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;HTH&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;P&gt;Rick&lt;/P&gt;&lt;P&gt;&lt;/P&gt;&lt;/BODY&gt;&lt;/HTML&gt;</description>
      <pubDate>Sun, 01 Feb 2009 22:53:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/aaa-acs-4-1-enable-ssh-access-while-diable-console-access-for/m-p/1212261#M419074</guid>
      <dc:creator>Richard Burts</dc:creator>
      <dc:date>2009-02-01T22:53:05Z</dc:date>
    </item>
  </channel>
</rss>

