Cisco av-pair for NX-OS and IOS

Norman Zhang norman.zhang at
Fri Feb 8 05:51:34 CET 2013


Using freeradius2-2.1.12. I need to setup read-write access for both Cisco
NX-OS and IOS devices. I did the following,

DEFAULT Group == operator-rw, Auth-Type = System
        Service-Type = NAS-Prompt-User,
        cisco-avpair := "shell:roles*\"network-admin vdc-admin

I can log into both NX-OS and IOS devices; however, IOS devices only
permits exec mode not the privileged exec (enable) mode. Not sure if I'm
doing something wrong on the syntax. Can someone give me few pointers?

-------------- next part --------------
An HTML attachment was scrubbed...
URL: <>

More information about the Freeradius-Users mailing list