cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
482
Views
0
Helpful
2
Replies

AAA Local with Privilege Levels

whisperwind
Level 1
Level 1

The goal....

1. local usernames on a router to control access

2. Use privilege levels in the username command to reflect what a user is allowed to do

3. Define a set of commands available to users with privilege level 1

My trouble here is that I cannot seem to find this exact combination of commands for what I want to do on CCO or Google. I have tried several combinations and here is what I have so far, but its not working.

aaa new-model

!

aaa authentication login default local

aaa authorization commands 1 default local

!

username engineer priv 15 pass XXXX

username tech priv 1 pass XXXX

!

privilege exec level 1 traceroute


privilege exec level 1 ping

!

2 Replies 2

Jagdeep Gambhir
Level 10
Level 10

Hi,

This link answers your question.

http://www.cisco.com/en/US/tech/tk59/technologies_tech_note09186a00800949d5.shtml

aaa authori command is not reqd.

Regards,

~JG

Do rate helpful posts

JG, thanks for the reply I pasted the config shown there into my router, reloaded, its not working as they described it would.