RE: IOS privileges for helpdesk

From: Frank Gusky (frank9990@gmail.com)
Date: Mon Nov 03 2008 - 22:36:36 ARST


You can define the commands the helpdesk people can use for a priv level of
2 w/out giving them the enable p/w.

-----Original Message-----
From: nobody@groupstudy.com [mailto:nobody@groupstudy.com] On Behalf Of
darth router
Sent: Monday, November 03, 2008 3:58 PM
To: ccie forum
Subject: IOS privileges for helpdesk

 fellas/ladies,

Few questions on this.
1. with the below config, can I get this to work somehow ? I do not want to
get rid of the enable pass. It will not work with the current config.
2. is there a way to have more than 1 enable pass with a diff priv level set
for helpdesk (haven't been able to get this to work)
3. Is there a way to clear all commands from a privilege level, mtrace,
ping, etc...? I can see in the doc CD how to add, but not remove default
commands.

aaa authentication login default local line
aaa authentication enable default enable

enable secret cisco

username admin password cisco
username helpdesk priviledge 2

Blogs and organic groups at http://www.ccie.net



This archive was generated by hypermail 2.1.4 : Mon Dec 01 2008 - 08:18:28 ARST