cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1244
Views
0
Helpful
3
Replies

ACS Authorization

aneesh.ts
Level 3
Level 3

Hi all,

I have setup Cisco secure ACS in my office. Issue is authorization. I want to give granularity to different users like some users needs to execute only some commands in previleged mode (eg: mpls traffic engineering re-optimize tunnel). I was trying to do this using Shell Authorization set. But its not working.

Am either unable to login to previleged mode, or if i am able to login I can have all the previlages. Please help me in configuring this. Am in bangalore. Those willing to help can gimme a call @ 99020 16336.

3 Replies 3

jorge.nielsen
Community Member

Hi, put in your devices

aaa authorizacion exec ...

aaa authorizacion commands ...

and in the ACS

for user, put privilege 15 and define shell commands...

Daniel Laden
Level 8
Level 8

ACS Shell Command Authorization Sets on IOS and ASA/PIX/FWSM Configuration Example

http://www.cisco.com/en/US/products/sw/secursw/ps2086/products_configuration_example09186a00808d9138.shtml

Issue I faced was related to aaa authorization config-commands.

Thanks for your help.