Cisco 6500 and Adminstration Delagation

Answered Question
Apr 6th, 2008
User Badges:

Hi There,

we are looking at deploying several Cisco 6513 and consolidating several infrastructures. With this we will have several administrators from other offices needing access to these devices to make changes to their specific environments. My question is, is there a way to delegate control to only specific areas, ports, etc. to specific administrators rather than the entire switch? We would rather them only impact their own environments instead of everyone. is this possible?

Thanks.

Correct Answer by Jason Fraioli about 8 years 11 months ago

You could use Privilege levels. You could even apply those privilege levels via radius or tacacs



privilege configure level 7 interface

privilege configure level 7 interface range -

privilege exec level 7 ping

privilege exec level 7 configure terminal

privilege exec level 7 configure


http://www.cisco.com/warp/public/480/PRIV.html

  • 1
  • 2
  • 3
  • 4
  • 5
Overall Rating: 5 (1 ratings)
Loading.
Correct Answer
Jason Fraioli Sun, 04/06/2008 - 05:09
User Badges:

You could use Privilege levels. You could even apply those privilege levels via radius or tacacs



privilege configure level 7 interface

privilege configure level 7 interface range -

privilege exec level 7 ping

privilege exec level 7 configure terminal

privilege exec level 7 configure


http://www.cisco.com/warp/public/480/PRIV.html

Actions

This Discussion