We have the ACS Security Appliance and it is on version4.1(1) Build 23 Patch 4.
I am in the process of setting up a couple of NDGs. One of the NDGs I would like to have for our key routers and the other for our switches. The switches will have a command authorization set that allows our desktop personal to bring up and down ports.
Currently I have it for the routers that desktop can not issue any commands and no level when they log in but I would like to stop them from even being able to log in. Is this feasible?
We have configured the outside and inside Interface with official ipv6 adresses, set a default route on outside Interface to our router, we also have definied a rule , which also gets hits, to permit tcp from inside Interface to any6.
In Syslog I also se...