cancel
Showing results for 
Search instead for 
Did you mean: 
cancel

Who Me Too'd this topic

Account roles - read only to configs

bberry
Level 1
Level 1

Hello,

We are a new user with Prime and have a couple questions. It seems to be quite a power yet complex tool so figure we have a ways to go.

I have the system up and running and am able to do a discovery and pull the configs so it seems basic operation is there. I still need to work on the change logging stuff but figure I need to get Tacacs up and running as part of that. My question here is that I will also be implementing ISE and it to uses Tacacs or at least AAA for its operation. Is there anything I need to be aware of f getting both to work at the same time on the same device?

Secondly - Are there any recommendations or suggestions on the additional roles for users I might want to create. I already have a question from our security group requesting read access to the configs. They would like to use this tool to make sure the network devices are hardened agains a security standard but do not waht to accidently change something that will affect the network.

Thirdly - I am looking into getting Prime to backup configs as changes are made instead of simply on a periodic basis. I figure I need to integrate syslog or at least some type of trap to key on when an archive is needed. Would that also affect any external syslogging currently in place? i.e. logging to syslog server for regular daily device operation?

I am sure We will have more questions as we go so thanks in advance for teh assistance. Any recommendations on further documentation of fully setting up the system or recommendations on what needs to be setup on the system are appreciated.

Brent

Who Me Too'd this topic