03-03-2022 08:01 AM - edited 03-03-2022 08:07 AM
Hi,
I authenticate with the switch with ACS.
Authentication is successful but I am unable to run show run or make change in configure terminal.
sh privilege
User name: testacc
Current privilege level: -1
Feature privilege: Disabled
sh run
% Permission denied for the role
Hardware
cisco Nexus5548 Chassis
Reason: Reset Requested by CLI command reload
System version: 7.3(7)N1(1b)
Please advise how can I resolve it. Thank you.
Regards,
Daniel
Solved! Go to Solution.
03-08-2022 08:43 AM
have this configuration written ?
In this case Looks like it locked up now, you have only Option here is console, try connect to console , since it confgured as local.
03-09-2022 12:33 AM
I still have remote access to the device. Is there any command that will allow me to have option to change configuration?
In the current state I can only view show commands.
Thanks
03-09-2022 04:43 AM
if you have remote access, are you using local account or radius loging ?
do you have any config command access :
post aaa command information what configured
03-09-2022 04:48 AM
I am using account that was created in ACS, it has Value: shell:roles*"network-admin vdc-admin" assigned to the shell profile.
It still prevents me from creating new vlans in the configuration mode. Thanks
sh run aaa
!Command: show running-config aaa
aaa authentication login default group ACS_Servers local
aaa authentication login console local
aaa authorization config-commands default group ACS_Servers
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide