Advanced tacacs+ settings (user), Setting enable privilege options for a user – Cisco 3.3 User Manual

Page 279

Advertising
background image

7-33

User Guide for Cisco Secure ACS for Windows Server

78-16592-01

Chapter 7 User Management

Advanced User Authentication Settings

Step 3

To allow TACACS+ AAA clients to permit unknown services for this user, select
the Default (Undefined) Services check box.

Step 4

Do one of the following:

If you are finished configuring the user account options, click Submit to
record the options.

To continue to specify the user account options, perform other procedures in
this chapter, as applicable.

Advanced TACACS+ Settings (User)

The information presented in this section applies when you have a AAA client
with TACACS+ configured.

Tip

If the Advanced TACACS+ Settings (User) table does not appear, click Interface
Configuration
, click TACACS+ (Cisco IOS), and then click Advanced
TACACS+ Features
.

This section contains the following topics:

Setting Enable Privilege Options for a User, page 7-33

Setting TACACS+ Enable Password Options for a User, page 7-35

Setting TACACS+ Outbound Password for a User, page 7-37

Setting Enable Privilege Options for a User

You use TACACS+ Enable Control with Exec session to control administrator
access. Typically, you use it for router management control. From the following
four options, you can select and specify the privilege level you want a user to
have.

Use Group Level Setting—Sets the privileges for this user as those
configured at the group level.

No Enable Privilege—Disallows enable privileges for this user.

Advertising