All MIBs › CIENA-CES-TACACS-CLIENT-MIB › cienaCesTacacsClientPrivilegeLevelAdmin
cienaCesTacacsClientPrivilegeLevelAdmin
Module: CIENA-CES-TACACS-CLIENT-MIB
OID (symbolic): CIENA-CES-TACACS-CLIENT-MIB::cienaCesTacacsClientPrivilegeLevelAdmin
OID (numeric): 1.3.6.1.4.1.1271.2.3.2.1.1.1.5
Node type: OBJECT-TYPE
Type: Integer32
Access: read-write
Description: Indicates the privilege level used for mapping a range of TACACS privilege levels to the SAOS administrative privilege level. A privilege level returned by a server is compared to cienaCesTacacsClientPrivilegeLevelRW. If the server privilege level is less than cienaCesTacacsClientPrivilegeLevelRW and greater than or equal to the cienaCesTacacsClientPrivilegeLevelAdmin, the SAOS privilege level is 'admin.'
What is cienaCesTacacsClientPrivilegeLevelAdmin?
This sets the lower bound of the TACACS privilege-level range that maps to the device's SAOS admin role, working together with the RW privilege-level object as the upper bound of that range. Because SAOS privilege levels are derived purely by comparing the level the TACACS server returns against this and the other threshold objects, misconfiguring these boundary values can silently grant a user a lower local privilege level than the TACACS server administrator believes they assigned, without any error being raised. For example, if this is set to 6 and the RW threshold is 10, a user whose TACACS server returns privilege level 8 would land in the admin role on this device.
Examples
Walk all instances (SNMPv2c):
snmpwalk -v2c -c public <target> 1.3.6.1.4.1.1271.2.3.2.1.1.1.5 snmpwalk -v2c -c public <target> CIENA-CES-TACACS-CLIENT-MIB::cienaCesTacacsClientPrivilegeLevelAdmin
Get a specific instance (index 1):
snmpget -v2c -c public <target> 1.3.6.1.4.1.1271.2.3.2.1.1.1.5.1 snmpget -v2c -c public <target> CIENA-CES-TACACS-CLIENT-MIB::cienaCesTacacsClientPrivilegeLevelAdmin.1
Set instance 1 (SNMPv2c):
snmpset -v2c -c private <target> 1.3.6.1.4.1.1271.2.3.2.1.1.1.5.1 i <value>
Start monitoring Ciena CES (Carrier Ethernet Switch) platforms with a free 30-day trial of IPNetwork Monitor. Create custom SNMP monitor using the CIENA-CES-TACACS-CLIENT-MIB::cienaCesTacacsClientPrivilegeLevelAdmin OID value, configure state conditions and alerts, and monitor any Ciena CES (Carrier Ethernet Switch) platforms from a single console.
OID Breakdown
Upper-level ancestors (9 from the standard OID tree / other modules)
| Numeric OID | Name | Module |
|---|---|---|
| 1 | iso | LANART-AGENT |
| 1.3 | org | AirPair-MIB |
| 1.3.6 | dod | AirPair-MIB |
| 1.3.6.1 | internet | AirPair-MIB |
| 1.3.6.1.4 | private | AirPair-MIB |
| 1.3.6.1.4.1 | enterprises | AirPair-MIB |
| 1.3.6.1.4.1.1271 | ciena | CIENA-SMI |
| 1.3.6.1.4.1.1271.2 | cienaCes | CIENA-SMI |
| 1.3.6.1.4.1.1271.2.3 | cienaCesStatistics | CIENA-SMI |
| Numeric OID | Name | Module |
|---|---|---|
| 1.3.6.1.4.1.1271.2.3.2 | cienaCesTacacsClientMIB | CIENA-CES-TACACS-CLIENT-MIB |
| 1.3.6.1.4.1.1271.2.3.2.1 | cienaCesTacacsClientMIBObjects | CIENA-CES-TACACS-CLIENT-MIB |
| 1.3.6.1.4.1.1271.2.3.2.1.1 | cienaCesTacacsClient | CIENA-CES-TACACS-CLIENT-MIB |
| 1.3.6.1.4.1.1271.2.3.2.1.1.1 | cienaCesTacacsClientGlobal | CIENA-CES-TACACS-CLIENT-MIB |
| 1.3.6.1.4.1.1271.2.3.2.1.1.1.5 | cienaCesTacacsClientPrivilegeLevelAdmin | CIENA-CES-TACACS-CLIENT-MIB |