cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
1918
Views
1
Helpful
1
Replies

Parser Views/Superviews w/ RADIUS

gilliganb
Level 1
Level 1

I've been trying to find if there are vendor-specific RADIUS attributes for linking our Windows NPS server to views/superviews on our 2900 series routers and haven't been having any luck. I've been using privilege levels but find managing those tedious. Is there a way to use views or are the privilege levels the only things supported?

 

Thanks!

1 Reply 1

Cristian Matei
VIP Alumni
VIP Alumni

Hi,

 

    Microsoft NPS supports Vendor Specific Attributes; look for Cisco and include the following attribute as authorization in your NPS policy: "shell:cli-view-name=VIEWNAME". You would assign the users privilege level 15, as the view will control what commands they have access to.

    Ideally you would do command authorization via TACACS, and there are free TACACS servers running perfectly.

 

Regards,

Cristian Matei.

Review Cisco Networking for a $25 gift card