04-29-2011 02:03 PM - edited 03-10-2019 06:02 PM
I am trying to configure an ASA 5505 running 8.3 to allow a priv 15 local user to be able to ssh into the device and be placed into priv 15 mode without having to execute the enable command and type the enable password.
Right now when you log in as a priv 15 user you still have to execute the enable command and type the enable password to get to priv 15.
Any suggestions would be appreciated.
Thanks in advance.
Tim Clark
04-30-2011 08:45 AM
"exec level authorization is only supported in routers and switches. ASA does not allow you to enter into privilege 15 mode (enable mode) directly. May be it is security concern. You can go for command authorization if you want to restrict Particular user from executing commands"
Regards
Vamsi
04-30-2011 09:05 AM
I don't think that's possible. I have ACS configured to login a user automatically to level 15. It works with routers, but not with ASA.
05-02-2011 08:38 AM
Hi Tim,
ASA is a different IOS. Direct entry to th exec mode is not possible on the ASA.
Hope this helps.
Regards,
Anisha
P.S.: please mark this thread as answered if you feel your query is resolved. Do rate helpful posts.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide