08-28-2009 11:51 AM - edited 03-06-2019 07:29 AM
I am trying to setup a username with a lower level access so they cannot access a config t.
I am having a hard time finding any documentation on what each level does. I only want the user to view a show run. Now i know i could setup a privilage command and then enter in each and eveery command for a show run and set it to lets say level 3 or something.
I dont want to go through all that, i just want to set it to the level where they can view the entire output of a show run.
08-28-2009 12:04 PM
Hi Donald,
you will need to set first the privlidge for the users , and then assign them the appropriate command.
here what you can do:
1- username xxxx privilidge 2 password yyyy
2- in the config mode;
privlidge level 2 exec (sh run)
like wise, if you need to assign them command in the config mode you will have to type config after the level or if its in the interface you will have to type the interface.
HTH
Mohamed
08-28-2009 12:12 PM
thank you, i realized that. But if i did a level 2 and then set sh run. When they did it, they would not see the entire config. I would also have to set a show ip, sh iterface , sh router ......
so they can see everything in a show run. Isnt there a level i can set that includes all of them?
08-28-2009 12:12 PM
Please refer to this technote:
http://www.cisco.com/en/US/tech/tk59/technologies_tech_note09186a00800949d5.shtml
HTH,
__
Edison.
Discover and save your favorite ideas. Come back to expert answers, step-by-step guides, recent topics, and more.
New here? Get started with these tips. How to use Community New member guide