Solved

cisco routers users setup privileges through a radius server

Posted on 2015-02-19
4
74 Views
Last Modified: 2015-07-31
We have some users that will require additional privileges on cisco routers, like executing commands  such as no shut on an interface, etc. Is it possible to set specific privileges levels on a radius server and apply to users.
0
Comment
Question by:Shen
  • 2
  • 2
4 Comments
 
LVL 4

Assisted Solution

by:askincakir
askincakir earned 500 total points
ID: 40620697
Hi,

Mostly solution for your request is done by Cisco Tacacs+ server. There you can use command level permit actions.
But, here i am giving you some another cli level privilege enablements.
Just check and let me know is this what you need ?
Module-Bonus-7-user-priviledges.pptx
0
 

Author Comment

by:Shen
ID: 40625727
Is there a way to setup a radius group named say:  "test" that belongs to example: domain users

then on the cisco device do :
aaa authentication login "test" group radius local

setup the privilege in the router :
Like example:   privilege exec level 1 show ip  
                            username group  "test" privilege 1
I am trying to avoid setting  users and passwords  in the router. Use radius to provide the users and authentication and assign the privilege exec level to a radius group "test"
0
 
LVL 4

Accepted Solution

by:
askincakir earned 500 total points
ID: 40628178
Hi,

Which radius you are planning to use ?

Microsoft NPS ?

Cisco ACS ?
br,
0
 

Author Comment

by:Shen
ID: 40649436
nps
0

Featured Post

Gigs: Get Your Project Delivered by an Expert

Select from freelancers specializing in everything from database administration to programming, who have proven themselves as experts in their field. Hire the best, collaborate easily, pay securely and get projects done right.

Question has a verified solution.

If you are experiencing a similar issue, please ask a related question

Suggested Solutions

Title # Comments Views Activity
WAN connection scenario 11 61
Enabling RDP on ASA to access internal servers 4 59
HP 1920-16 switch 10 61
Identify bottom to remote server 2 48
Outsource Your Fax Infrastructure to the Cloud (And come out looking like an IT Hero!) Relative to the many demands on today’s IT teams, spending capital, time and resources to maintain physical fax servers and infrastructure is not a high priority.
Use of TCL script on Cisco devices:  - create file and merge it with running configuration to apply configuration changes
Here's a very brief overview of the methods PRTG Network Monitor (https://www.paessler.com/prtg) offers for monitoring bandwidth, to help you decide which methods you´d like to investigate in more detail.  The methods are covered in more detail in o…
In this tutorial you'll learn about bandwidth monitoring with flows and packet sniffing with our network monitoring solution PRTG Network Monitor (https://www.paessler.com/prtg). If you're interested in additional methods for monitoring bandwidt…

776 members asked questions and received personalized solutions in the past 7 days.

Join the community of 500,000 technology professionals and ask your questions.

Join & Ask a Question