[tac_plus] Tacacs+ scenario: can I permit user to configure only for one interface and deny others

asad a.alii85 at gmail.com
Mon Mar 11 15:09:32 UTC 2013


Hey,

I wants to allow certain user A to only able to access interface for
configuration. E.g

GigabitEthernet 0/0

and at the same time block all others from accessing the same interface.

Kindly can you provide the configuration for the setup?

Right now I'm using
 default service = deny

 cmd = interface { permit [faFAgiGI].* }


regards,
Asad
-------------- next part --------------
An HTML attachment was scrubbed...
URL: <http://www.shrubbery.net/pipermail/tac_plus/attachments/20130311/8c7a36c4/attachment.html>


More information about the tac_plus mailing list