Link to home
Start Free TrialLog in
Avatar of PT Guy
PT Guy

asked on

Read-only access Cisco ASA Firewall

Need to create a read-only accounts for users to access the ASA with ASDM.

In order to do this, I need to enable AAA authentication.  Currently I have other local accounts the ASA. Will enabling AAA authentication affect those accounts?

Thank you.
ASKER CERTIFIED SOLUTION
Avatar of arnold
arnold
Flag of United States of America image

Link to home
membership
This solution is only available to members.
To access this solution, you must be a member of Experts Exchange.
Start Free Trial
Avatar of PT Guy
PT Guy

ASKER

I needed to create read-only users for people be able monitor/view end user VPN connections.

I followed your suggestion of: When adding aaaa make sure you retain "local" as a viable, and was able create the user with Read-only access.

Moving forward, If I wanted to create a read-only user, I would only need to create a "local" user with Privilege level 1?

Thank you for your assistance.
you have to see whether a user with level 1 will have rights to what you want them to have.
i think 1 might not be the right level..
level 3 or 4 might be closer.create the user, login and see if you can perform the commands?
show crypto isakmp sa?