[c-nsp] vs tacacs+ on Nexus 5010
Lincoln Dale
ltd at cisco.com
Sat Jun 13 10:09:04 EDT 2009
Arne Larsen / Region Nordjylland wrote:
> Hi Folks.
>
> Does anyone off you have a Nexus 5010 running under tacacs+ freeware.
> I can't find any doc. regarding the respond the Nexus need to authorize users.
> How does one setup restricted users, like a user that only has the permissions to use show commands.
> The box users ether plain pap or chap login, does anyone know why this is different from a "normal" Cisco box.
>
NX-OS / Nexus platforms use RBAC.
Nexus 7000 documentation shows this, i'm sure N5K docs do too, but i
have N7K handy. see
http://www.cisco.com/en/US/docs/switches/datacenter/sw/4_1/nx-os/security/configuration/guide/sec_tacacsplus.html#wp1511744
see
http://www.cisco.com/en/US/docs/switches/datacenter/sw/4_1/nx-os/security/configuration/guide/sec_tacacsplus.html#wp1511711
for details on how to specify the role using a VSA.
cheers,
lincoln.
More information about the cisco-nsp
mailing list