<?xml version="1.0" encoding="UTF-8"?>
<rss xmlns:content="http://purl.org/rss/1.0/modules/content/" xmlns:dc="http://purl.org/dc/elements/1.1/" xmlns:rdf="http://www.w3.org/1999/02/22-rdf-syntax-ns#" xmlns:taxo="http://purl.org/rss/1.0/modules/taxonomy/" version="2.0">
  <channel>
    <title>topic Re: Cisco IOS/IOS-XE command vs privilege levels in Network Security</title>
    <link>https://community.cisco.com/t5/network-security/cisco-ios-ios-xe-command-vs-privilege-levels/m-p/4413925#M1081345</link>
    <description>&lt;P&gt;best way to remidate this issue is, go higher level like priv 5 or more, and give restrict with commands is good option i see,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I know bit odd some of the command do not work until we elivate user rights for cetain commands.&lt;/P&gt;</description>
    <pubDate>Mon, 07 Jun 2021 10:39:37 GMT</pubDate>
    <dc:creator>balaji.bandi</dc:creator>
    <dc:date>2021-06-07T10:39:37Z</dc:date>
    <item>
      <title>Cisco IOS/IOS-XE command vs privilege levels</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ios-ios-xe-command-vs-privilege-levels/m-p/4413919#M1081343</link>
      <description>&lt;P&gt;I use ISE for device administration. We have created Read Only and Read/Write command profiles. Read/Write level 15.&amp;nbsp;&lt;/P&gt;&lt;P&gt;for the read only we set the privilege level 3 and then restricted the commands that could be executed.&lt;/P&gt;&lt;P&gt;the dir command was permitted for read only users but when executed the system comes back as command authorization fail.&lt;/P&gt;&lt;P&gt;I increasing privilege levels makes no differences.&lt;/P&gt;&lt;P&gt;sh run can only be executed with a priv level of 15. My testing shows the same for the dir command.&amp;nbsp;&lt;/P&gt;&lt;P&gt;Question is there a Cisco page that shows what commands can be issued at each level. My understanding was that levels 2-14 were user defined. This clearly doesn't seem to be the case.&lt;/P&gt;</description>
      <pubDate>Mon, 07 Jun 2021 10:35:15 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ios-ios-xe-command-vs-privilege-levels/m-p/4413919#M1081343</guid>
      <dc:creator>russell.sage</dc:creator>
      <dc:date>2021-06-07T10:35:15Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco IOS/IOS-XE command vs privilege levels</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ios-ios-xe-command-vs-privilege-levels/m-p/4413925#M1081345</link>
      <description>&lt;P&gt;best way to remidate this issue is, go higher level like priv 5 or more, and give restrict with commands is good option i see,&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;I know bit odd some of the command do not work until we elivate user rights for cetain commands.&lt;/P&gt;</description>
      <pubDate>Mon, 07 Jun 2021 10:39:37 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ios-ios-xe-command-vs-privilege-levels/m-p/4413925#M1081345</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-06-07T10:39:37Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco IOS/IOS-XE command vs privilege levels</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ios-ios-xe-command-vs-privilege-levels/m-p/4413928#M1081346</link>
      <description>&lt;P&gt;thanks for the response but I set the priv level to 14 and dir command is still not permitted.&lt;/P&gt;</description>
      <pubDate>Mon, 07 Jun 2021 10:46:46 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ios-ios-xe-command-vs-privilege-levels/m-p/4413928#M1081346</guid>
      <dc:creator>russell.sage</dc:creator>
      <dc:date>2021-06-07T10:46:46Z</dc:date>
    </item>
    <item>
      <title>Re: Cisco IOS/IOS-XE command vs privilege levels</title>
      <link>https://community.cisco.com/t5/network-security/cisco-ios-ios-xe-command-vs-privilege-levels/m-p/4413938#M1081347</link>
      <description>&lt;P&gt;what is the ISE Live Logs shows ?&lt;/P&gt;
&lt;P&gt;Have given access or added command access.&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;example as below :&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://integratingit.wordpress.com/2018/05/03/configuring-ise-tacacs/" target="_blank"&gt;https://integratingit.wordpress.com/2018/05/03/configuring-ise-tacacs/&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&lt;A href="https://wrmem.net/index.php/2019/06/11/cisco-ise-configuring-tacacs-device-management/" target="_blank"&gt;https://wrmem.net/index.php/2019/06/11/cisco-ise-configuring-tacacs-device-management/&lt;/A&gt;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;
&lt;P&gt;&amp;nbsp;&lt;/P&gt;</description>
      <pubDate>Mon, 07 Jun 2021 11:02:47 GMT</pubDate>
      <guid>https://community.cisco.com/t5/network-security/cisco-ios-ios-xe-command-vs-privilege-levels/m-p/4413938#M1081347</guid>
      <dc:creator>balaji.bandi</dc:creator>
      <dc:date>2021-06-07T11:02:47Z</dc:date>
    </item>
  </channel>
</rss>

