cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
771
Views
0
Helpful
2
Replies

it is Possible with ACS 5.8?

Kevin Morales
Level 1
Level 1

 

Hi, I need to permit to user only create, delete or modify any access-list that begin with "TEST-". and another ACL that beging with any character the user is not allowed to modify.

 

configure terminal

ip access-list extended TEST-ACL 

 permit ip ...

 permit ip ..

 

it is possible to do it with ACS 5.8?,

2 Replies 2

balaji.bandi
Hall of Fame
Hall of Fame

I have not fully explored specifically 1 ACL, you need think and allow add specific command set for that user.

 

here is document for reference :

 

https://www.cisco.com/c/en/us/support/docs/security/secure-access-control-system/113590-acs5-tacacs-config.html

BB
*** Rate All Helpful Responses ***

BB

***** Rate All Helpful Responses *****

How to Ask The Cisco Community for Help

Seb Rupik
VIP Alumni
VIP Alumni

 

Hi there,

 

The command set would look like:

 

Grant Command Argument
Permit ip access-list extended TEST-

 

cheers,

Seb.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: