[nsp] TACACS Authentication for telnet users

Oliver Boehmer (oboehmer) oboehmer at cisco.com
Mon Jul 19 05:23:14 EDT 2004


[ sorry, now the complete email ]

include the following lines in your users' tacacs profile

        service = exec {
                priv-lvl = 15
        }


and enable exec authorization via "aaa authorization exec default group
tacacs+ if-authenticated" on your devices.

	oli

 
Tejal Shah Shah <> wrote on Monday, July 19, 2004 11:12 AM:

> Hello All,
> 
> As of now i am using TACACS for telnet user authentication ,
> i m defining uid & pasword in tacacs config file on TACACS server
> running on linux.
> 
> After user get authenticate on TACACS server,
> for login to enable mode i have to communicate enable password to all
> of them or enable level password on which limited command are allowed.
> 
> How can u define the priv-level in tacacs config so that user will get
> enable level access as per defined in tacacs server.So that i dont
> need to comminicate enable password any more.
> 
> 
> Regards
> Shah
> _______________________________________________
> cisco-nsp mailing list  cisco-nsp at puck.nether.net
> https://puck.nether.net/mailman/listinfo/cisco-nsp
> archive at http://puck.nether.net/pipermail/cisco-nsp/



More information about the cisco-nsp mailing list