sudo su
(pon contrasena)
apt-get install tacacs+
nano /etc/tacacs+/tac_plus.conf
SE ABRIRA NUEVO TEXTO
key = cisco
#GRUPOS
group = administratos {
default service = permit
}
group = limited{
default service = deny
cmd = show{
permit ip
permit interface
permit running-config
deny .*
}
service tacacs_plus restartnano /etc/tacacs+/tac_plus.conf#USUARIOS
user = pablo {
login = cleartext pablo
member = administrators
}
user = andres {
login = cleartext andres
member = limited
}
user = simon {
login = cleartext simon
member = limited
user = $enable$ {
login = cleartext cisco
}
GUARDAR Y SALIR
SE ABRE LA INTERFAZ
192.168.1.100. 255.255.255.0
config t
int e0/0
no shutdown
ip add
ip address 192.168.1.1 255.255.255.0
end
CONFIGURACION DE USUARIO Y CONTRASENA POR SI LLEGARA A FALLAR
No hay comentarios.:
Publicar un comentario