cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
477
Views
0
Helpful
2
Replies

AAA Local with Privilege Levels

whisperwind
Level 1
Level 1

The goal....

1. local usernames on a router to control access

2. Use privilege levels in the username command to reflect what a user is allowed to do

3. Define a set of commands available to users with privilege level 1

My trouble here is that I cannot seem to find this exact combination of commands for what I want to do on CCO or Google. I have tried several combinations and here is what I have so far, but its not working.

aaa new-model

!

aaa authentication login default local

aaa authorization commands 1 default local

!

username engineer priv 15 pass XXXX

username tech priv 1 pass XXXX

!

privilege exec level 1 traceroute


privilege exec level 1 ping

!

2 Replies 2

Jagdeep Gambhir
Level 10
Level 10

Hi,

This link answers your question.

http://www.cisco.com/en/US/tech/tk59/technologies_tech_note09186a00800949d5.shtml

aaa authori command is not reqd.

Regards,

~JG

Do rate helpful posts

JG, thanks for the reply I pasted the config shown there into my router, reloaded, its not working as they described it would.

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: