cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
846
Views
0
Helpful
3
Replies

Local User Authorization

networker99
Level 1
Level 1

TACACS+ is configured for AAA (Authentication and Authorization) with LOCAL as a backup. But how can I ensure that the local user will be authorized to perform tasks in the event that TACACS+ is unavailable. The authentication fails over fine, but Im not sure how to set up authorization for the local user

3 Replies 3

Jatin Katyal
Cisco Employee
Cisco Employee

Hi,

If you have created local users with privlege 15 then they won;t face any issue in tacacs server absence but if you really want to configure local authorization with diffferent privlege level then

check this:

http://www.cisco.com/en/US/tech/tk59/technologies_tech_note09186a00800949d5.shtml

HTH

Regards,

JK

~Jatin

Most of the time this is true, but occasionally I get the following "Fallback authorization. Username 'enable_15' not in LOCAL database

Command authorization failed

"

Get your running config.

~Jatin