[tac_plus] question

Mike Keselman mkeselman at m5net.com
Thu Aug 18 16:22:42 UTC 2011


Hi,

I am running tacacs+ version tacacs+-F4.0.4.19-1 in my envelopment. I am
having issues configuring Cisco commands with in the daemon. Currently my
cisco gear has privilege 5 permission configured for a subset of commands. I
have to move those commands to a central place as opposed to having them on
each device.  Any help would be appreciated.

Sample of what is configured is below


group = test {
        # description: test group
        default service = deny
        service = exec {
                priv-lvl = 5
                }
}

user = tactest {
        login = cleartext tac

        member = test

        cmd = configure { permit terminal }
        cmd = show {
               permit .* }
}


Thanks,

-- 

*Mike Keselman*

**M5 Networks, Inc.

Phone: (646)747-1632

www.m5net.com
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.shrubbery.net/pipermail/tac_plus/attachments/20110818/244f1ef3/attachment.html>


More information about the tac_plus mailing list