cancel
Showing results for 
Search instead for 
Did you mean: 
cancel
387
Views
5
Helpful
1
Replies

Show config not working in ACS "Shell Command Auth set"

networker99
Level 1
Level 1

To allow an AAA user access to the "show config" command I have created them an account in ACS and assigned the relevant "Shell Auth Set" but it still does not permit them to use it?, I read that this may not be the command that the switch sends the ACS server. Anyone have any ideas (switch is configured with all AAA commands)

1 Reply 1

Vinay Sharma
Level 7
Level 7

Hi,

I am expecting that rest of the shell command authorization configuration is good on the ACS and device. We need to add command show along with the argument in command authorization set. I have attached a sample configuration for reference.

Please verify the configuration of ACS and device before making any changes from keeping your self locked on the device.

ACS Shell Command Authorization Sets on IOS and ASA/PIX/FWSM Configuration Example:-

http://cisco.com/en/US/products/sw/secursw/ps2086/products_configuration_example09186a00808d9138.shtml

Thanks & Regards