HP 5920 Series Configuration Manual page 27

Hide thumbs Also See for 5920 Series:
Table of Contents

Advertisement

information about password management and global password configuration, see
password
Local user configuration task list
Tasks at a glance
(Required.)
(Optional.)
(Optional.)
Configuring local user attributes
Follow these guidelines when you configure local user attributes:
When the password control feature is globally enabled by using the password-control enable
command, local user passwords are not displayed.
The authentication mode of user interfaces is set by the authentication-mode command, and affects
the commands available for login users. In AAA (scheme) mode, the authorized user role
determines the commands available for each login user. In password (password) or no
authentication (none) mode, the user role of respective user interfaces determines the commands
available for the login users. The user role of respective user interfaces also determines the
commands available for the public key authenticated SSH users. For more information about the
authentication mode and user roles for user interfaces, see Fundamentals Configuration Guide.
You can configure authorization attributes and password control attributes in local user view or user
group view. The setting in local user view takes precedence.
You cannot delete a local user who is the only security log manager in the system, nor can you
change or delete the security log manager role of the user. To do so, you must first specify a new
security log manager.
To configure local user attributes:
Step
1.
Enter system view.
2.
Add a local user and enter
local user view.
3.
(Optional.) Configure a
password for the local
user.
4.
Assign services for the
local user.
control."
Configuring local user attributes
Configuring user group attributes
Displaying and maintaining local users and local user groups
Command
system-view
local-user user-name [ class
{ manage | network } ]
service-type { ftp | lan-access |
{ ssh | telnet | terminal } * }
For a network access user:
password { cipher | simple }
password
For a device management user:
password [ { hash | simple }
password ]
19
Remarks
N/A
By default, no local user exists.
Network access user passwords are
encrypted with the encryption
algorithm and saved in cipher text.
Device management user passwords
are encrypted with the hash
algorithm and saved in cipher text.
A local user with no password
configured directly passes
authentication after providing the
valid local username and attributes.
To enhance security, configure a
password for each local user.
By default, no service is authorized to
a local user.
"Configuring

Advertisement

Table of Contents
loading

This manual is also suitable for:

5900 series

Table of Contents