Network Management

last person joined: 22 hours ago 

Keep an informative eye on your network with HPE Aruba Networking network management solutions
Expand all | Collapse all

AoS 8.x MGMT role based access via TACACS

This thread has been viewed 5 times
  • 1.  AoS 8.x MGMT role based access via TACACS

    Posted Sep 16, 2020 09:46 AM

    I have implemented role based access for management users via TACACS on our cluster but find that read only users cannot execute 'mdconnect' or 'logon' commands and therefore cannot look at configuration easily on MC's. Apart from giving all users the standard role, is there another way around this?



  • 2.  RE: AoS 8.x MGMT role based access via TACACS

    EMPLOYEE
    Posted Sep 16, 2020 12:19 PM

    https://www.arubanetworks.com/techdocs/ArubaOS_86_Web_Help/Content/arubaos-solutions/behavior-defaults/defa-mana-user-role.htm

     

    Try "standard" role.

    EDIT:  It seems like no role is allowing you to do MDC, unfortunately.

     



  • 3.  RE: AoS 8.x MGMT role based access via TACACS

    Posted Sep 17, 2020 05:23 AM

    Standard works fine but I don't want to give read only users write access. 

    The read only users can log in directly to MC's and run show commands but it would be easier via the MM so there is a single login.



  • 4.  RE: AoS 8.x MGMT role based access via TACACS

    EMPLOYEE
    Posted Sep 17, 2020 07:18 AM

    Yes, that would be convenient, but those roles do not allow MDC, unfortunately.