From: Sam Lai (sam@ccielife.com)
Date: Tue Jul 03 2007 - 00:18:53 ART
Hi Peter-
Are you trying to login over Console or VTY? Can you post all AAA commands on this switch?
Sam
________________________________
From: nobody@groupstudy.com on behalf of Peter Svidler
Sent: Sun 7/1/2007 10:47 AM
To: ccielab@groupstudy.com; security@groupstudy.com
Subject: command authorization on 3550
guys ;
I am trying to configure command authorization on the 3550 , user at certain (level say level 10 ) should again access to certain command set from the TACACS server ..everything works great
when i reboot the switch i found out that the switch alerted the configurtion i previously did adding some default methods which i have not done
teh command i put was
aaa authorization commands 10 TACACS_Method group tacacs+
that has been changed to
aaa authorization commands 10 default group tacacs+ group tacacs+
and now i was not able to login on level 10 anymore , the switch take me to level 1 instead
can anyone explains what is going on ??
---------------------------------
TV dinner still cooling?
Check out "Tonight's Picks" on Yahoo! TV.
This archive was generated by hypermail 2.1.4 : Sat Aug 18 2007 - 08:17:39 ART