08-03-2010 07:24 AM - edited 03-10-2019 05:18 PM
I have set up a new ACS 5.1 appliance and it seems to be going well. I would like to be able to restrict access to the command SHOW CDP NEIGHBOR DETAIL to a specific group but continue to allow SHOW CDP NEIGHBOR.
I am able to either allow access to the SHOW CDP commands or deny them but am unable to get more granular with the command arguments.
Can anyone offer any suggestions?
Thanks for the assistance.
Paul Blake
Solved! Go to Solution.
08-10-2010 05:27 AM
08-06-2010 10:07 AM
Can you post a screenshot of the command set definition?
08-10-2010 05:27 AM
this is my example which works fine
and the result
so it can be done
08-13-2010 11:06 AM
That worked GREAT!!! Thanks.. I think I was missing the final "s" when inputting the command into the ACS. Show CDP Neighbor detail is different than show CDP neighbors detail.
Thanks again for you help.
08-17-2010 04:14 AM
I have configured ACS 5.1 and im having issues with Commadn sets. Im trying to deny show cdp neighbors to some users. What priv level should they receive when they log in. I just cant get the command sets to deny any commands
08-17-2010 04:21 AM
I would do it in a different way.
create separate rule with additional condition of that separate user group and then as result assign them different command set.
I think its the easiest way
regards
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide