Cisco 2509 - Router - EN User Manual page 635

User guide
Hide thumbs Also See for 2509 - Router - EN:
Table of Contents

Advertisement

Appendix F
RDBMS Synchronization Import Definitions
Table F-5
Action Codes for Modifying TACACS+ and RADIUS Group and User Settings (continued)
Action
Code
Name
174
ADD_IOS_
COMMAND
175
REMOVE_IOS_
COMMAND
78-14696-01, Version 3.1
Required
Description
UN|GN,
Authorizes the given Cisco IOS command and
VN, V1
determines if any arguments given to the command are to
be found in a defined set or are not to be found in a
defined set. The defined set is created using Actions 176
and 177:
GN = "Group 1"
VN = "telnet"
V1 = "permit"
or
UN = "fred"
VN = "configure"
V1 = "deny"
The first example permits the Telnet command to be
authorized for users of Group 1. Any arguments can be
supplied to the Telnet command as long as they are not
matched against any arguments defined via Action 176.
The second example permits the configure command to
be authorized for user fred, but only if the arguments
supplied are permitted by the filter defined by a series of
Action 176.
UN|GN,
Removes command authorization for the user or group:
VN
GN = "Group 1"
VN = "telnet"
or
UN = "fred"
VN = "configure"
Users of Group 1 can no longer use the Cisco IOS telnet
command.
User fred can no longer use the configure command.
User Guide for Cisco Secure ACS for Windows Server
Action Codes
F-23

Hide quick links:

Advertisement

Table of Contents
loading

This manual is also suitable for:

Secure acs

Table of Contents