06-26-2008 06:45 AM - edited 03-05-2019 11:50 PM
Hi,
We are working for a large organization where we have 4500 to 5000 network devices.and we have to provide the read only access to client.now problem for me is when they type the "sh run" configuration they are able to view my SNMP. Can some one please help us that how to hide the some of the lines in router or switch i.e our main intention is we want to hide our SNMP String.
06-27-2008 05:41 AM
Hi,
I'm pretty sure you cannot directly hide or permit the viewing of specific commands in a show run. But there is an excellent solution form Cisco to overcome the problem of not allowing people to view complete configs on a router or switch. This is called role-based CLI.
Check it out here.
http://cisco.com/en/US/docs/ios/12_3t/12_3t7/feature/guide/gtclivws.html#wp1058080
There is a lot here to cover, but i'm sure given the size of your network, it may be worth your while.
HTH - Please rate if it does.
Regards
Stephen
06-30-2008 05:52 AM
Hi,
I would like to know few thinks before i can suggest anything on this.
The clients are porvided with access to this devices in what manner ?
Means do the console to the switch or have dail in or VTY access ?
Are there any privilege set for these switches for useres to log in ?
Is there any tacacs or radius server ?
Please do let us know so we can suggest better
Also if possible paste the configs of any switch.
Regrads,
pravin.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide