RE: command authorization on 3550

From: Sam Lai (sam@ccielife.com)
Date: Tue Jul 03 2007 - 00:18:53 ART


Hi Peter-
 
Are you trying to login over Console or VTY? Can you post all AAA commands on this switch?
 
Sam

________________________________

From: nobody@groupstudy.com on behalf of Peter Svidler
Sent: Sun 7/1/2007 10:47 AM
To: ccielab@groupstudy.com; security@groupstudy.com
Subject: command authorization on 3550

guys ;
  I am trying to configure command authorization on the 3550 , user at certain (level say level 10 ) should again access to certain command set from the TACACS server ..everything works great
  
  when i reboot the switch i found out that the switch alerted the configurtion i previously did adding some default methods which i have not done
  
  teh command i put was
  aaa authorization commands 10 TACACS_Method group tacacs+
  
  that has been changed to
  
  aaa authorization commands 10 default group tacacs+ group tacacs+
  
  
  and now i was not able to login on level 10 anymore , the switch take me to level 1 instead
  
  can anyone explains what is going on ??

---------------------------------
TV dinner still cooling?
Check out "Tonight's Picks" on Yahoo! TV.



This archive was generated by hypermail 2.1.4 : Sat Aug 18 2007 - 08:17:39 ART