Use "after authorization" feature of tacacs+.
It allows to call arbirtary script or program and supplies it with basic
information with call received. Script can return exitcodes, allowing or
disallowing call.
Consult with the tail of "users_guide" file, which is in tacacs+
distribution package.
--------------------------------------------------------
Basil (Vasily) Dolmatov, CCIE #5347, CCNP-Security, CCDA
LightCom Corp. http://www.lightcom.ru
> -----Original Message-----
> From: nick@inc.net [mailto:nick@inc.net]On Behalf Of Nick Bauer
> Sent: Thursday, September 14, 2000 6:31 PM
> To: cisco-nsp@puck.nether.net
> Subject: [nsp] TACACS+ Question
>
>
> Does anyone know of a way using TACACS+ to limit which groups have
> access to certain routers?
>
>
> Thanks,
>
> -Nick
>
This archive was generated by hypermail 2b29 : Sun Aug 04 2002 - 04:12:17 EDT