cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
491
Views
0
Helpful
1
Replies

ACS 4.2 issue

acbennyma
Level 1
Level 1

Dear all,

I want to controller the access right of operator accout (priviledge 15) cannot show run and show startup config.However, I want to let operator to ( e.g. show run interface fastethernet 0/1 port ). Attach is screen captured, After tested, the operator can success from issue show run and show startup config.

However, operator also can't issue show run interface fastethernet 0/1. In my design, I want it can success. Can ACS 4.2 "Shared profile components "Authorization set" can do this ?

1 Reply 1

Fabio Francisco
Level 1
Level 1

Yes ACS is able to do that for you.

Under Group Setup create 2 groups: one for the operators with minimum privileges eq 1 and the other account with privilege of 15.

I sugest you do the restrictions under Group Setup > Privileges level other than expressively denying access as shown in the picture.

Cheers,

Fabio