ASA na local users

Hi

How to disable SSH access or enable access for selected users on ASA5510 (SW version is 7.2). Is it possible ? Currently I have defined by 'username' command few users. Part of them are defined to configure ASA, and rest of them to login using Cisco VPN Client. But all of them can login on ASA by ssh and enable... All users using same enable password as is their username password.

My configuration:

username vpnuser1 password ... encrypted username vpnuser1 attributes group-lock value LANVPN username vpnuser2 password ... encrypted username vpnuser2 attributes group-lock value LANVPN username admin1 password ... encrypted username admin2 password ... encrypted ! aaa authentication serial console LOCAL aaa authentication telnet console LOCAL aaa authentication ssh console LOCAL aaa authentication enable console LOCAL

Robert

Reply to
robhass
Loading thread data ...

Cabling-Design.com Forums website is not affiliated with any of the manufacturers or service providers discussed here. All logos and trade names are the property of their respective owners.