Priviledge Exec Level Commands

Unanswered Question
Feb 1st, 2007

Does anyone know how to limit the commands available to a single user without giving too much access to the show commands? I believe this should be exec level 6 and below.

I created a user at privledge level 0 to only issue command "show ip bgp summary"

Is there any way to remove the extra commands input by the router below? or am I going about this the wrong way? IE, do I need TACACS or RADUIUS vs. a simple username cisco privledge 0 password abcd?

the commands I am trying to remove are

**only want this one* privilege exec level 0 show ip bgp summary

**cant remove* privilege exec level 0 show ip bgp

**cant remove* privilege exec level 0 show ip

**cant remove* privilege exec level 0 show

any thoughts on how to go about this?

IOS is

c2800nm-advipservicesk9-mz.124-10a.bin

I have this problem too.
0 votes
  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
Loading.
bwalchez Thu, 02/08/2007 - 07:20

Using TACACS+ or RADIUS is good way of administrating the netwrok in order to authorise the user under control.

Actions

This Discussion