cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
13692
Views
5
Helpful
2
Replies

Bypass need for enable password?

devin.noel
Level 1
Level 1

How do you let a user acutomatically go to enable mode without the enable password? We are using aaa new-model authentication with local non-tacacs logins. All of the admins have their own username/pass to login, but I'd like to bypass the need to hand out the enable password to everybody. I'm pretty sure I remember being able to grant people with level 15 access direct access to enable commands, but don't remember how.

aaa new-model
aaa authentication login default local enable

username john privilege 15 password 7 ...........

2 Replies 2

Edison Ortiz
Hall of Fame
Hall of Fame

You need authorization, something like this:

aaa authorization exec default local if-authenticated

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community:

Review Cisco Networking products for a $25 gift card