11-11-2008 05:00 AM - edited 03-10-2019 04:10 PM
Hi all,
I have setup Cisco secure ACS in my office. Issue is authorization. I want to give granularity to different users like some users needs to execute only some commands in previleged mode (eg: mpls traffic engineering re-optimize tunnel). I was trying to do this using Shell Authorization set. But its not working.
Am either unable to login to previleged mode, or if i am able to login I can have all the previlages. Please help me in configuring this. Am in bangalore. Those willing to help can gimme a call @ 99020 16336.
11-11-2008 09:54 AM
Hi, put in your devices
aaa authorizacion exec ...
aaa authorizacion commands ...
and in the ACS
for user, put privilege 15 and define shell commands...
11-12-2008 05:23 PM
ACS Shell Command Authorization Sets on IOS and ASA/PIX/FWSM Configuration Example
11-12-2008 08:43 PM
Issue I faced was related to aaa authorization config-commands.
Thanks for your help.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide