Give a man a fish and he eats for a day, teach a man to fish; and he eats for life.  We have to learn to look these things up in CdoC-CD but your helping me too so I don't mind.
http://www.cisco.com/en/US/docs/ios-xml/ios/sec_usr_cfg/configuration/12-4t/sec-cfg-sec-4cli.html
Regards,
 Joe Sanchez
On Apr 10, 2012, at 5:52 AM, Imran Ali <immrccie_at_gmail.com> wrote:
> Can you please post the link.
> 
> some one suggested me command authorizaiton . but i think simple solution
> would be to give privilege level 1 and 15 on ACS/SBR  and then use local
> privilege authorizaiton to bring show commands to level 1.
> 
> this way level one user will have access to only show commands and admins
> will get default enable password , and can go in priviledge mode.
> 
> 
> Any furter advice or easy solution will be thankfully appreciated.
> 
> 
> 
> 
> 
> On Tue, Apr 10, 2012 at 10:49 AM, Radioactive Frog <pbhatkoti_at_gmail.com>wrote:
> 
>> Imran, ,
>> There is a tech note on this exact scenario under acs in DOCCD.
>> 
>> Basically enable aaa on rtr and then in acs use radius custom command sets
>> under user or group settings to restrict user.
>> 
>> 
>> On Monday, April 9, 2012, Imran Ali wrote:
>> 
>>> hi all,
>>> 
>>> Need assistance for a basic ACS set up .
>>> 
>>> i need to create to have two users with one with raed only (all show
>>> commands)  account and other with read write (every thing ) account .
>>> 
>>> how can i achieve the same if ACS is replaced with SBR/ OPEN radius ?
>>> 
>>> Thanks
>>> 
>>> 
>>> Blogs and organic groups at http://www.ccie.net
>>> 
>>> _______________________________________________________________________
>>> Subscription information may be found at:
>>> http://www.groupstudy.com/list/CCIELab.html
> 
> 
> Blogs and organic groups at http://www.ccie.net
> 
> _______________________________________________________________________
> Subscription information may be found at: 
> http://www.groupstudy.com/list/CCIELab.html
Blogs and organic groups at http://www.ccie.net
Received on Tue Apr 10 2012 - 06:12:21 ART
This archive was generated by hypermail 2.2.0 : Tue May 01 2012 - 08:20:45 ART