> Source: [sk108851](https://support.checkpoint.com/results/sk/sk108851)

# sk108851 - TACACS+ users with role TACP-15 fail to access Expert mode on R77.30 Gaia OS

| Property | Value |
|----------|-------|
| Solution ID | sk108851 |
| Date Created | 2016-03-07 |
| Last Modified | 2018-06-05 |
| Technical Level | Advanced |
| Products | Security Gateway, Security Management Server, Multi-Domain Security Management Server |
| Versions | R82.10, R82, R81.20, R82.10, R82, R81.20, R82.10, R82.20, R81.20, R82, R82.20 |
| OS | Gaia |

## Symptoms

- * TACACS+ users with role TACP-15 fail to access Expert mode on R77.30 Gaia OS:

  1. TACACS+ user connects to command line on Gaia OS.
  2. TACACS+ user successfully logs in to Clish on Gaia OS.
  3. TACACS+ user is not able to access Expert mode - after running "*expert* " command, the shell does not change:  
     `HostName:0> expert`  
     `
     Enter expert password:`  
     `
     `  
     `
     Warning! All configuration should be done through clish`  
     `
     You are in expert mode now.`  
     `
     `  
     `
     HostName:0>`
* */var/log/messages* file shows only the following messages after running "*expert*" command in Gaia Clish:

  `clish[`*PID* `]: cmd by admin: Start executing : expert (cmd md5: ...) `  
  `
  clish[`*PID*`]: cmd by admin: Processing : expert (cmd md5: ...)`

## Cause

In R77.30 Gaia OS, a change was made that requires to set the privileges for TACACS+ users.

The default privilege level is set to 96 ("*set aaa tacacs-servers user-uid 96*").

## Solution

This solution requires authentication. Please log in to view the full solution.

---

# Agent Instructions

This content is from the Check Point Support Center (https://support.checkpoint.com), the official knowledge base for Check Point cybersecurity products.

## Navigating This Knowledge Base

- **Complete index**: [llms.txt](https://support.checkpoint.com/llms.txt)
- **All SK articles**: [SecureKnowledge Sitemap](https://support.checkpoint.com/sitemaps/secureknowledge-sitemap-index.xml)
- **SK article URL pattern**: `https://support.checkpoint.com/results/sk/{skId}`
- **Markdown responses**: AI bot User-Agents automatically receive `text/markdown` content
