Cisco IOS Access Privileges

To manage Cisco IOS access points with the Avalanche Console, you must have both an HTTP account that has administrative privileges and an authorized SNMP Read/Write user name. You might also need to add a Telnet user if the Enable password is not the default. Telnet access must be enabled on the infrastructure device.

By default, the Telnet user name, password, and Enable password for Cisco IOS access points is “Cisco”. If you enabled security for managing infrastructure devices when you installed the infrastructure server package, this default Telnet information is removed to prevent unauthorized access.

Avalanche will enable SNMP on the access point provided it can enter Enable mode. By default, SNMP is disabled and no SNMP Read/Write user exists.

If you installed the Infrastructure Server package with security disabled, Avalanche will add a public SNMP Read/Write user. If you installed the Infrastructure Server package with security enabled, Avalanche will add a SNMP Read/Write user with the same value as the Telnet user name. Avalanche will remove the public SNMP Read/Write user any time you enable its security features.

When you create Cisco IOS access privileges, it is helpful to remember the following:

Avalanche will automatically add a Cisco/Cisco HTTP user. This user exists to manage any infrastructure that is in its factory default state. It is recommended that you do not delete these entries—doing so can result in Avalanche being unable to manage access points.
If the SNMP Read/Write name is left at its default value (public), then Avalanche replaces it with the HTTP user name you define.
If you connect to access points using a Web browser, the User Name text box in the Web browser authentication dialog box corresponds to the device’s Telnet user name. Similarly, the Password text box corresponds to the Telnet Enable password.

To define Cisco IOS access privileges:

1   In the Profiles tab, select the profile for which you are defining privileges.
2   Click Edit.
3   In the Device Access Privileges area, configure the privileges for the profile.

If you modified the Cisco IOS infrastructure device so that its Telnet Enable password is not “Cisco,” select the TELNET tab. Enter the Telnet Enable password that Avalanche requires and click Add.

4   Select the HTTP tab and click Add.
5   In the dialog box that appears, enter an HTTP user name and password. For Cisco IOS access points, this information is used as follows:
HTTP user name is used as the Telnet user name.
HTTP password is used as the Telnet and Telnet Enable passwords.
6   Enable the Make This User a Cisco AP Administrator checkbox to make the new account a Cisco AP administrator.

Note:   If you have a mixed environment of VxWorks and IOS access points, this account will be used for both types of access points.

7   Save your changes.

 

© 2012 Wavelink Corporation. All Rights Reserved.