Cisco Support Community
cancel
Showing results for 
Search instead for 
Did you mean: 
Announcements

Welcome to Cisco Support Community. We would love to have your feedback.

For an introduction to the new site, click here. And see here for current known issues.

New Member

Authorization in PIX Ver 6.3

I am setting up Auth and Authorization with PIX Firewall. Auth seems to be working fine. but authorization is not working..

The moment I give the command

aaa authorization command TACSERVE, the PIx is locking up and I refer the document

http://www.cisco.com/en/US/customer/products/hw/vpndevc/ps2030/products_tech_note09186a00800949d6.shtml#csnt-tacacs

But it does not help. I am using ACS 3.0

aaa-server TACACS+ protocol tacacs+

aaa-server RADIUS protocol radius

aaa-server LOCAL protocol local

aaa-server TACSERVER protocol tacacs+

aaa-server TACSERVER (inside) host xx.xx.xx.xx Dialup timeout 10

aaa authentication telnet console TACSERVER

Any help would be appreciated

3 REPLIES
New Member

Re: Authorization in PIX Ver 6.3

Yes. I agree, I am having the same problem. I have had to password recover the pix 3 times trying to get this to work

New Member

Re: Authorization in PIX Ver 6.3

Have u made an appropriate command authorization set ?

Cisco says that PIX uses service=pix shell, yet my experience with all the beta versions of PIX 6.3 , eben the one before the release was that it still uses

service=IOS shell.

So try applying a command authorization set of service IOS shell.

Regards.

New Member

Re: Authorization in PIX Ver 6.3

Would you mind telling what should be I checking to make sure that IOS Shell has been applied instead of PIX Shell..

148
Views
0
Helpful
3
Replies
CreatePlease login to create content