<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic You could use roles in NX OS in Network Access Control</title>
    <link>https://community.cisco.com/t5/network-access-control/ise-radius-authorization-nx-os/m-p/2593482#M72538</link>
    <description>&lt;P&gt;You could use roles in NX OS instead to define what commands users can issue, and assign them using ISE via radius.&lt;/P&gt;</description>
    <pubDate>Fri, 17 Oct 2014 22:54:05 GMT</pubDate>
    <dc:creator>jan.nielsen</dc:creator>
    <dc:date>2014-10-17T22:54:05Z</dc:date>
    <item>
      <title>ISE RADIUS authorization NX-OS</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-radius-authorization-nx-os/m-p/2593481#M72537</link>
      <description>&lt;P&gt;Anybody could confirm if RADIUS authorization is not supported on NX-OS?&lt;/P&gt;&lt;P&gt;If it's not supported,&amp;nbsp;how&amp;nbsp;should it be configured with&amp;nbsp;ISE once ISE doesn't support TACACS?&amp;nbsp;&lt;/P&gt;&lt;P&gt;NX-OS(config)# aaa authorization config-commands default group radius local&lt;BR /&gt;Radius group is not supported for command authorization&lt;BR /&gt;could not update aaa configuration&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 11 Mar 2019 05:07:21 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-radius-authorization-nx-os/m-p/2593481#M72537</guid>
      <dc:creator>rodrigohcsilva</dc:creator>
      <dc:date>2019-03-11T05:07:21Z</dc:date>
    </item>
    <item>
      <title>You could use roles in NX OS</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-radius-authorization-nx-os/m-p/2593482#M72538</link>
      <description>&lt;P&gt;You could use roles in NX OS instead to define what commands users can issue, and assign them using ISE via radius.&lt;/P&gt;</description>
      <pubDate>Fri, 17 Oct 2014 22:54:05 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-radius-authorization-nx-os/m-p/2593482#M72538</guid>
      <dc:creator>jan.nielsen</dc:creator>
      <dc:date>2014-10-17T22:54:05Z</dc:date>
    </item>
    <item>
      <title>Jan is correct, you can't</title>
      <link>https://community.cisco.com/t5/network-access-control/ise-radius-authorization-nx-os/m-p/2593483#M72540</link>
      <description>&lt;P&gt;Jan is correct, you can't configure NX-OS based device the same way you would IOS based one when it comes to AAA. NX-OS devices do not "understand"&amp;nbsp;&lt;STRONG&gt;privilege level.&amp;nbsp;&lt;/STRONG&gt;Instead, they use RBAC (Role Based Access Control). As a result, you have to return a&amp;nbsp;&lt;STRONG&gt;shell role&amp;nbsp;&lt;/STRONG&gt;from your Radius server:&lt;/P&gt;

&lt;PRE class="codeblock" style="font-size: 15.1999998092651px; font-family: 'Courier New', Courier, mono; margin-top: 0.5em; margin-bottom: 0em; line-height: 1.2em; color: rgb(0, 0, 0); background-color: rgb(255, 255, 255);"&gt;
shell:roles=&lt;EM&gt;user_role&lt;/EM&gt;&lt;/PRE&gt;

&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;For more info take a look at the latest "NX-OS Security Configuration Guide" or&amp;nbsp;this link:&lt;/P&gt;
&lt;P&gt;&lt;A href="http://www.cisco.com/c/en/us/td/docs/switches/datacenter/sw/6_x/nx-os/security/configuration/guide/b_Cisco_Nexus_7000_NX-OS_Security_Configuration_Guide__Release_6-x/b_Cisco_Nexus_7000_NX-OS_Security_Configuration_Guide__Release_6-x_chapter_0110.html#task_1074483"&gt;http://www.cisco.com/c/en/us/td/docs/switches/datacenter/sw/6_x/nx-os/security/configuration/guide/b_Cisco_Nexus_7000_NX-OS_Security_Configuration_Guide__Release_6-x/b_Cisco_Nexus_7000_NX-OS_Security_Configuration_Guide__Release_6-x_chapter_0110.html#task_1074483&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;Hope this helps!&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;EM&gt;Thank you for rating helpful posts!&amp;nbsp;&lt;/EM&gt;&lt;/P&gt;</description>
      <pubDate>Sun, 19 Oct 2014 07:10:09 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-access-control/ise-radius-authorization-nx-os/m-p/2593483#M72540</guid>
      <dc:creator>nspasov</dc:creator>
      <dc:date>2014-10-19T07:10:09Z</dc:date>
    </item>
  </channel>
</rss>

