11-06-2022 01:03 AM
Hello Experts,
How can I modify the Authorization Attributes in ISE, so that when a network device has a ssh session, the time out will be (never)?
Thanks
Solved! Go to Solution.
11-06-2022 04:29 AM
Solved:
Just modify the time in Shell Profile (work center - device administration - policy element - result - TACACS profile)
then edit the needed profile,
Best Regards
11-06-2022 02:36 AM - edited 11-06-2022 02:40 AM
Leaving always on is security risk:
You can do this on the device :
(config)#line vty 0 15
(config-line)#session-timeout ?
you can also use exec-timeout x x
11-06-2022 02:42 AM
Hi Balaji,
yes, for sure, but in my case, the ISE overrides the configuration,
11-06-2022 04:32 AM
Try below: if you using ISE 3.0
11-06-2022 04:29 AM
Solved:
Just modify the time in Shell Profile (work center - device administration - policy element - result - TACACS profile)
then edit the needed profile,
Best Regards
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide