PIX Command Authorization

Unanswered Question
Jan 29th, 2008
User Badges:

I have cisco PIX 525. I want my junior engineer to restrict to show commands. I dont want him to configure access-list and anything else. He is only suppose to sh the running and other show commands.

I have made a user A and assign him with privilage 7. But when i log in with this user i was able to configure all things.

username A password muljoLmw8YN8dG2h encrypted privilege 7

I wana authenticate user locally and rest of all things local database. No external ACS.

kindly tell me how to configure Firewall for this thing.

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 0 (0 ratings)
JORGE RODRIGUEZ Sat, 02/02/2008 - 17:22
User Badges:
  • Green, 3000 points or more

Try using privilege 5 instead of 7. With 5 he should not be able to enter config mode, but do show run or show ver etc. but no configs privilege... try that.




This Discussion