cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
595
Views
0
Helpful
3
Replies

Nexus Tacacs

breland910
Level 1
Level 1

hello,

Can anyone provide assistance on how to change the default AAA tacacs role in the nexus environment?  By default if you authenticate with tacacs you are place in the VDC operator role, which limits you to the changes you can make.

Thanks,

3 Replies 3

Reza Sharifi
Hall of Fame
Hall of Fame

Hi,

You cannot change the default roles network-admin, network-operator, vdc-admin, and vdc-operator.

You can add the user to the vdc-admin role which will give you access to everything.

http://www.cisco.com/en/US/docs/switches/datacenter/sw/4_1/nx-os/security/configuration/guide/sec_rbac.html#wp1454861

HTH

I understand that per user, but what about a team of engineers that use tacacs to login to the nexus devices?  we are using an ACS server

Never mind...figured it out. Thanks for the reply.  In the ACS server you have to specify the role

Review Cisco Networking for a $25 gift card