Heads Up :
The post you are writing will appear in a public forum. Please ensure all content is appropriate for public consumption. Review the employee guidelines for the community here.
Hi,I want to create a user with priv 15 that can login directly to the enable mode prompt from any AAA client.Currently, the user logs in to the device then has to authenticate a second time (same PAP password) to gain priv 15.Is a direct login possi...
Hi,I wish to route a public IP range from one provider across another providers backbone. I want to route this range statically via a GRE tunnel.However, the end-point (Customer spoke) is only DYNAMICALLY IP assigned a PUBLIC address.Is it possible t...
Hi,Am doing some simple CE VoIP QoS for a IPSEC/GRE Customer. I try to ATTACH the policy to the tunnel outbound and the command is accepted without any error but nothing appears in the config.Here's the base config:class-map match-all IPSEC-VPN match...
Hi,I'm using AAA/RADIUS but want to allow a particular user to access therouter via local login with username and password. This will actually run anautocommand to allow them to see what they need and nothing else.Question:How do I allow this user to...
Hi,I'm running an IP VPN over a frame-relay cloud using triple DES. There are 6 sites in a hub and spoke topology. We are running VoIP between the sites, setting precedence. The calls are ok but we are seeing some dropped packets for each call. One t...
Hi Farrukh,So that you are clear about what I want to do:I work for an ISP that has just merged with another.1st ISP uses RADIUS and collects configs via RANCID for its AS.2nd ISP uses TACACS+ CSACS 3.3 and doesn't useRANCID to collect configs.So, I ...
Hi Farrukh,So that you are clear about what I want to do:I work for an ISP that has just merged with another.1st ISP uses RADIUS and collects configs via RANCID for its AS.2nd ISP uses TACACS+ CSACS 3.3 and doesn't useRANCID to collect configs.So, I ...
Thanks for tips.The group that you speak of Farrukh - is this the same group that i create on the ACS?I create one user and put it in one group on ACS platform - for RANCID backup of config files.If I add the line that you suggest to the devices, - t...
Hi guys,Thanks for the responses. I have used DMVPN since it was bleeding nose tech 4 or 5 years ago. I don't need to encrypt. The interface in this case is only p-p so I don't require a multi-point GRE interface (I remove that from the config). I gu...