Solved

Cisco router user limited configuration access level

Posted on 2012-03-26
7
546 Views
Last Modified: 2012-06-22
Hello Experts,

I have a Cisco Router and I would like to limit a user access to the following:
1. Can not read or view the entire cisco router configuration
2. Can not add, change modify the configuration
3. I would like to only allow ping access to different network resources for troubleshooting

Any ideas are greatly apprecialted.
0
Comment
Question by:RandallVillalobos
  • 4
  • 3
7 Comments
 
LVL 5

Expert Comment

by:abhishek1986
ID: 37769783
If you want users not to be able to access switch via telnet, you can simply not tell them the password for the switch. Pinging is allowed by default and so you need not do anything for that.
If you have something else in mind, please be more specific as to your requirements and there are various features and privilege and roles that can be set for users, there are options to use AAA servers, Radius Servers as well for role definition and setup.
0
 

Author Comment

by:RandallVillalobos
ID: 37772329
Hello,

I would like to create a restricted local database user authentication (not AAA).
I remember a long time a ago, I was given a router username where I could only run certain features.

Not giving the enable password will not work (just tried it) because I can not run extended pings.

Thank you
0
 

Author Comment

by:RandallVillalobos
ID: 37778149
Any ideas?
0
Netscaler Common Configuration How To guides

If you use NetScaler you will want to see these guides. The NetScaler How To Guides show administrators how to get NetScaler up and configured by providing instructions for common scenarios and some not so common ones.

 
LVL 5

Expert Comment

by:abhishek1986
ID: 37780269
Do you want other users to log in to the switch or not?
0
 

Author Comment

by:RandallVillalobos
ID: 37783717
Hi abhishek1986,

Yes, I would like for them to log in the router with local authentication.  Thanks for the help.
0
 
LVL 5

Accepted Solution

by:
abhishek1986 earned 500 total points
ID: 37785552
There are ways regarding that:

Cisco routers have options to configure and customize 14 levels of privileged access.

http://www.cisco.com/en/US/docs/ios/12_2t/12_2t13/feature/guide/ftprienh.html
0
 

Author Closing Comment

by:RandallVillalobos
ID: 37787257
thanks
0

Featured Post

Easy, flexible multimedia distribution & control

Coming soon!  Ideal for large-scale A/V applications, ATEN's VM3200 Modular Matrix Switch is an all-in-one solution that simplifies video wall integration. Easily customize display layouts to see what you want, how you want it in 4k.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

One of the biggest threats in the cyber realm pertains to advanced persistent threats (APTs). This paper is a compare and contrast of Russian and Chinese APT's.
The next five years are sure to bring developments that are just astonishing, and we will continue to try to find the balance between connectivity and security. Here are five major technological developments from the last five years and some predict…
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…
Nobody understands Phishing better than an anti-spam company. That’s why we are providing Phishing Awareness Training to our customers. According to a report by Verizon, only 3% of targeted users report malicious emails to management. With compan…

792 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question