cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1592
Views
1
Helpful
1
Replies

Parser Views/Superviews w/ RADIUS

gilliganb
Level 1
Level 1

I've been trying to find if there are vendor-specific RADIUS attributes for linking our Windows NPS server to views/superviews on our 2900 series routers and haven't been having any luck. I've been using privilege levels but find managing those tedious. Is there a way to use views or are the privilege levels the only things supported?

 

Thanks!

1 Reply 1

Cristian Matei
VIP Alumni
VIP Alumni

Hi,

 

    Microsoft NPS supports Vendor Specific Attributes; look for Cisco and include the following attribute as authorization in your NPS policy: "shell:cli-view-name=VIEWNAME". You would assign the users privilege level 15, as the view will control what commands they have access to.

    Ideally you would do command authorization via TACACS, and there are free TACACS servers running perfectly.

 

Regards,

Cristian Matei.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: