All other Cisco networking related discussions.
kiizai
New Member
Posts:
39
Joined:
Wed Oct 21, 2009 10:14 pm

RANCID assist (Solved) but still looking for better solution

Fri Apr 09, 2010 9:51 am

Sorry I wasn't know where actually to be post :*|

I'm trying to set up RANCID.

Status
1. TACACS with certain privileges
2. Has Enable password
3, Login with TACACS it ending with "#"

Those router with TACACS I'm unable to access to enable mode with RANCID.

So, I try to set the add autoenable x.x.x.x {0} [default is 0= =||], force the RANCID to run enable but it's failed.
http://www.shrubbery.net/rancid/man/cloginrc.5.html

Please provide some hints :bowdown: :bowdown:

p/s Unable to create extra TACACS with the all privileges
Last edited by kiizai on Mon Apr 12, 2010 2:39 am, edited 2 times in total.

User avatar
Dinger
Post Whore
Posts:
1397
Joined:
Fri Apr 25, 2008 2:16 pm
Certs:
CCNP, CCNA:Sec, MCSE

Re: RANCID assist

Fri Apr 09, 2010 3:00 pm

I'm familiar with RANCID, but I am unable to understand your question.

Autoenable tells rancid if it needs to enable or not; some devices will drop you right into enable mode, so there is no need to do an 'enable' command first.
"A problem well stated is a problem half solved". (Charles Kettering)

kiizai
New Member
Posts:
39
Joined:
Wed Oct 21, 2009 10:14 pm

Re: RANCID assist

Sat Apr 10, 2010 1:45 am

Sorry confusing you and other :*

I have test in two different router
My router it wont automatic drop direct to enable mode.
So I need to enable mode manually for both router A and B.

Router A which without TACACS(password only)
Success to enable mode and backup the configuration :cheers:

Router B with TACACS(username and password)
It wont auto enable mode and can't perform back up the configuration.

Please provide some hints :bowdown:

kiizai
New Member
Posts:
39
Joined:
Wed Oct 21, 2009 10:14 pm

Re: RANCID assist (Solved)

Mon Apr 12, 2010 2:39 am

:woohoo:

It's Luck LOL :|

when login to my customer router it will automatic prompt me hostname# not hostname>;
so the whole script will stop,
unless I set autoenable <router> {1}
the script will continue, since my tacacs with no privilege for show run, it useless.

So I change the script at clogin
set prompt ">" to set prompt "#"
it will execute the enable script when clogin verify the "#" but no more for ">" LOL

Although it Had solved my problem but cause another problem to me LOL.

Or anyone had any other better solution mind to share with me?

p/s I didn't study the whole script and just luck success solve it

Darby Weaver
New Member
Posts:
37
Joined:
Thu Nov 26, 2009 5:05 am

Re: RANCID assist (Solved) but still looking for better solu

Tue Apr 13, 2010 8:13 am

Are you sure?
Last edited by Darby Weaver on Mon Apr 19, 2010 11:26 pm, edited 1 time in total.
My blog or email.

kiizai
New Member
Posts:
39
Joined:
Wed Oct 21, 2009 10:14 pm

Re: RANCID assist (Solved) but still looking for better solu

Tue Apr 13, 2010 9:55 am

actually I don't allowed to do so.

the router configuration wasn't "belong" to customer and it's maintain by and own by ISP.

Perlhack
Member
Posts:
235
Joined:
Wed Aug 19, 2009 7:22 pm
Certs:
CCNP CCIP CCNA-S

Re: RANCID assist (Solved) but still looking for better solu

Wed Apr 14, 2010 9:34 pm

Code: Select all
Router B with TACACS(username and password)
It wont auto enable mode and can't perform back up the configuration.


There is a tacacs attribute "priv-lvl". Create a group with priv-lvl set to 15, assign the user to the member of the group and it will dump you into enable mode.
_______________________________________________________________________
There are 10 types of people in the world. Those who understand binary and those who don't.

kiizai
New Member
Posts:
39
Joined:
Wed Oct 21, 2009 10:14 pm

Re: RANCID assist (Solved) but still looking for better solu

Thu Apr 15, 2010 12:18 am

Perlhack wrote:
Code: Select all
Router B with TACACS(username and password)
It wont auto enable mode and can't perform back up the configuration.


There is a tacacs attribute "priv-lvl". Create a group with priv-lvl set to 15, assign the user to the member of the group and it will dump you into enable mode.


Thanks for the reply, I wasn't allow to create the group LOL but is fine; I found my problem.

Sharing the actual problem I face
herewith the details.
http://www.shrubbery.net/pipermail/ranc ... 04521.html

I do a simple modify at clogin but not advise

at clogin line 752
set prompt ">" change to set prompt "#"


but for those who login to the router is prompt ">" the clogin presume it was enable mode. (after the change above)

It had solve my problem but not sure will it cause other error or bug,

Thanks Dinger providing the link to me :)

matexoman
New Member
Posts:
1
Joined:
Wed Oct 28, 2015 4:39 am

Re: RANCID assist (Solved) but still looking for better solu

Wed Oct 28, 2015 4:42 am

I have the same situacion , but I dont find this code to modify and solve it, any have a other solution for this problem?

'

Return to Cisco General

Who is online

Users browsing this forum: No registered users and 11 guests