From: Mhlanga Libone (libone.mhlanga@xxxxxxxxxxxx)
Date: Wed Aug 28 2002 - 13:11:27 GMT-3
if you are using TACACS+ then I suppose you could use authorisation to
define the commands that the remote location are allowed to execute and
exclude show run which would normally need the enable anyway ...someone
correct me if I am wrong !!
http://www.cisco.com/univercd/cc/td/doc/product/software/ios122/122cgcr/fsec
ur_c/fsaaa/scfathor.htm
-----Original Message-----
From: Wright, Jeremy [mailto:JA_WRIGHT@admworld.com]
Sent: 28 August 2002 14:42
To: 'security@groupstudy.com'
Cc: 'ccielab@groupstudy.com'
Subject: Read Only Access For Telnet
I have a remote location that is needing read only access to my router. I
know you can decrypt the encrypted password in the show run and I want to
eliminate the possibility of them doing that. What is the best way to
accomplish this?
************************
Jeremy Wright
Network Analyst
Archer Daniels Midland
ja_wright@admworld.com
(217)451-4063
************************
This archive was generated by hypermail 2.1.4 : Sat Sep 07 2002 - 19:48:40 GMT-3