cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1919
Views
0
Helpful
3
Replies

Authorization in PIX Ver 6.3

SSubbiah
Level 1
Level 1

I am setting up Auth and Authorization with PIX Firewall. Auth seems to be working fine. but authorization is not working..

The moment I give the command

aaa authorization command TACSERVE, the PIx is locking up and I refer the document

http://www.cisco.com/en/US/customer/products/hw/vpndevc/ps2030/products_tech_note09186a00800949d6.shtml#csnt-tacacs

But it does not help. I am using ACS 3.0

aaa-server TACACS+ protocol tacacs+

aaa-server RADIUS protocol radius

aaa-server LOCAL protocol local

aaa-server TACSERVER protocol tacacs+

aaa-server TACSERVER (inside) host xx.xx.xx.xx Dialup timeout 10

aaa authentication telnet console TACSERVER

Any help would be appreciated

3 Replies 3

akohli
Level 1
Level 1

Yes. I agree, I am having the same problem. I have had to password recover the pix 3 times trying to get this to work

ciscotopgun
Level 1
Level 1

Have u made an appropriate command authorization set ?

Cisco says that PIX uses service=pix shell, yet my experience with all the beta versions of PIX 6.3 , eben the one before the release was that it still uses

service=IOS shell.

So try applying a command authorization set of service IOS shell.

Regards.

Would you mind telling what should be I checking to make sure that IOS Shell has been applied instead of PIX Shell..