Thanks for this confirmation. I just wanted to make sure that how it presents itself to me is correct.
Thanks again for all your feedback and support !!
Hi Andy,
If I implement that change then yes, I cannot at all ENABLE the Cisco at all anymore in case of a RADIUS failure. I would like to be able to ENABLE the device in case of a RADIUS failure without having to go through the recovery process.
My current problem is that if I try to ENABLE...
Hi Andy,
Thanks for posting your Cisco configuration. I found my problem. It was that the $enab15$ user RADIUS policy did not work correctly for a single user. I made the $enab15$ user part of my Level 1 (login access) AD group and now everything works. If I disable the $enab15$ user...
Hello Andy,
Thank you for the input. I tested it and it changed the situation to almost what I was looking for. I created an AD account called $enab15$ with a password. When I login as a read-only user and try to enable I am unable to do so even if I use the $enab15$ user password. Any idea...
Hello Everybody,
First of all thanks for this threat. It was an excelent resource for me. I have been able to implement an MS IAS (integrated into AD) as RADIUS for my Cisco devices.
I created to AD groups: One for Level 1 and one for Level 15 (enable) access. If I login as a member of...
This site uses cookies to help personalise content, tailor your experience and to keep you logged in if you register.
By continuing to use this site, you are consenting to our use of cookies.