[rancid] Re: Retrieving cisco configuration using SNMP+TFTP

Jee Kay jeekay at gmail.com
Thu Jun 29 11:46:05 UTC 2006


On 29/06/06, Kevin <kkadow at gmail.com> wrote:
> Risks and headaches of scripting the CLI are exactly why I went with
> the Cisco SNMP solution --  we have technical and political cause not
> to have a Unix machine/script with "enable" access into
> production-critical Cisco gear.

Just as a data point - you realise 'enable' access doesn't necessarily
mean 'privilege level 15' right? What we do here is lower 'show
startup-config' to priv level 2 and give the RANCID user priv2...
works grand :) Also means the RANCID user cannot affect the router in
any way.

Ras



More information about the Rancid-discuss mailing list