cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
713
Views
0
Helpful
5
Replies

How do you use RADIUS authentication to tell which users can logon specific Cisco devices?

hippieboy9
Level 1
Level 1

We have some routers that are currently set up for local logon and I want them to use RADIUS authentication like our other Cisco devices.  I want the users that access these routers now to still have access to them but not to the other Cisco devices using RADIUS authentication on the network.  How can I do this?

Thanks.

5 Replies 5

Ganesh Hariharan
VIP Alumni
VIP Alumni

We have some routers that are currently set up for local logon and I want them to use RADIUS authentication like our other Cisco devices.  I want the users that access these routers now to still have access to them but not to the other Cisco devices using RADIUS authentication on the network.  How can I do this?

Thanks.

Hi,

Are you doing via ACS if yes you can make restriction under user setting for particular access for certain devices like on port ssh or telnet by mentioning the aaa client ip address to have access or block.

Hope to Help !!

Ganesh.H

Remember to rate the helpful post

We are not using ACS.

Even if I could just enable the routers to allow authentication by RADIUS and local just on these routers that would work but I have not found a way to do that.  It always won't authenticate to local when the RADIUS server is up.

We are not using ACS.

Even if I could just enable the routers to allow authentication by RADIUS and local just on these routers that would work but I have not found a way to do that.  It always won't authenticate to local when the RADIUS server is up.

Pls share the aaa confguration which you have configured in your router !!

Ganesh.H

aaa new-model

aaa authentication login default group radius local

aaa authentication login CONSOLE line

aaa authorization exec default group radius if-authenticated

aaa session-id common

Does anyone know how to do this?

Getting Started

Find answers to your questions by entering keywords or phrases in the Search bar above. New here? Use these resources to familiarize yourself with the community: