Privilege Levels again....

From: Balogh, Jim (jim.balogh@gwl.com)
Date: Tue Nov 01 2005 - 20:39:27 GMT-3


Is there a way to log off a user immediately after they execute the
command they were given permission to run? Example: I want a user to
ONLY do a 'show ip route' on the router and then be logged off:

username test privilege 7 password test

privilege exec level 7 show ip route

First problem....how do I log this user out AFTER they execute their
command?

Second problem, when I apply this to line vty 0 4, and telnet to this
router, I am allowed to do ANY 'show ip' command. How can I restrict
this to just 'show ip route'? TIA.

Jim



This archive was generated by hypermail 2.1.4 : Thu Dec 01 2005 - 09:12:04 GMT-3