Privilege Levels

By default, the Cisco IOS Software command-line interface (CLI) has two levels of access to commands:

• Privileged EXEC mode (level 15)

However, you can configure additional levels of access to commands, called privilege levels, to meet the needs of your users while protecting the system from unauthorized access. You can configure up to 16 privilege levels, from level 0, which is the most restricted level, to level 15, which is the least-restricted level.

Access to each privilege level is enabled through separate passwords, which you specify when configuring the privilege level. If you want a certain set of users to be able to configure only certain interfaces, but not allow them access to other configuration options, for instance, you could create a separate privilege level for only specific interface configuration commands and distribute the password for that level to those users.

0 0

Post a comment