On Thu, Dec 06, 2007 at 09:03:39PM +0000, Thorsten Dahm wrote:
> Marc Haber wrote:
> > Which access privileges would RANCID need, and how far can the RANCID
> > account be restricted?
> 
> The same as any user who is able to to a "sh run".

Which access privileges are needed to do a "sh run"?

> > The administrators of the boxes are not very
> > keen on handing out unrestricted privilege 15 accounts to automated
> > processes.
> 
> They may can restrict the user to the "sh run" command only.

Is it possible to authenticate through a ssh key, and is it possible
to restrict a key to be only accepted from one single IP address?

Greetings
Marc

-- 
-----------------------------------------------------------------------------
Marc Haber         | "I don't trust Computers. They | Mailadresse im Header
Mannheim, Germany  |  lose things."    Winona Ryder | Fon: *49 621 72739834
Nordisch by Nature |  How to make an American Quilt | Fax: *49 3221 2323190
_______________________________________________
cisco-nsp mailing list  [email protected]
https://puck.nether.net/mailman/listinfo/cisco-nsp
archive at http://puck.nether.net/pipermail/cisco-nsp/

Reply via email to