Guys,

I'm scratching my head and trying to understand the solution in the task for 
Role-based access control. It says that we have to use Radius Attribute 6 and 
assign it to "NAS Prompt" in conjunction with cisco-av-pair 
"shell:cli-view-name=NAME".

What's this NAS Prompt is about ?
I tried to configure the Radius user with and without attribute 6 and I don't 
see any difference in the commands listing available to "limited" user:

parser view LIMITED
 secret 5 $1$CNt0$nHtDq7XnqZCt.jn0FVj/A1
 commands exec include show ip interface brief
 commands exec include show ip interface
 commands exec include show ip
 commands exec include show clock
 commands exec include show version
 commands exec include show logging
 commands exec include show privilege
 commands exec include show

Attribute 6 "NAS Prompt" is configured:

User Access Verification

Your ID:limited
Your password:

R3>?
Exec commands:
  <1-99>  Session number to resume
  enable  Turn on privileged commands
  exit    Exit from the EXEC
  show    Show running system information

Attribute 6 "NAS Prompt" is not configured:

User Access Verification

Your ID:limited
Your password:

R3>?
Exec commands:
  <1-99>  Session number to resume
  enable  Turn on privileged commands
  exit    Exit from the EXEC
  show    Show running system information

R3>show privilege
Currently in View Context with view 'LIMITED'

Eugene
_______________________________________________
For more information regarding industry leading CCIE Lab training, please visit 
www.ipexpert.com

Are you a CCNP or CCIE and looking for a job? Check out 
www.PlatinumPlacement.com

Reply via email to