Role - HP FlexFabric 7900 Series Command Reference Manual

Hide thumbs Also See for FlexFabric 7900 Series:
Table of Contents

Advertisement

policy. With the user role, you can perform the following tasks on the VPN instances in the permitted
VPN instance list:
Create, remove, or configure the VPN instances.
Enter the VPN instance views.
Specify the VPN instances in feature commands.
You can repeat the permit vpn-instance command to add permitted MPLS L3VPN instances to a
user role VPN instance policy.
The undo permit vpn-instance command removes the entire list of permitted VPN instances if you
do not specify a VPN instance.
Any change to a user role VPN instance policy takes effect only on users who log in with the user role
after the change.
Examples
1.
Configure user role role1:
# Permit the user role to execute all commands available in system view and in the child views
of system view.
<Sysname> system-view
[Sysname] role name role1
[Sysname-role-role1] rule 1 permit command system-view ; *
# Permit the user role to access VPN instance vpn1.
[Sysname-role-role1] vpn policy deny
[Sysname-role-role1-vpnpolicy] permit vpn-instance vpn1
[Sysname-role-role1-vpnpolicy] quit
[Sysname-role-role1] quit
2.
Verify that you cannot use the user role to work on any VPN instances except vpn1:
# Verify that you can enter the view of vpn1.
[Sysname] ip vpn-instance vpn1
[Sysname-vpn-instance-vpn1] quit
# Verify that you can specify the primary accounting server at 10.110.1.2 in VPN instance vpn1
for RADIUS scheme radius1.
[Sysname] radius scheme radius1
[Sysname-radius-radius1] primary accounting 10.110.1.2 vpn-instance vpn1
[Sysname-radius-radius1] quit
# Verify that you cannot create VPN instance vpn2 or enter its view.
[Sysname] ip vpn-instance vpn2
Permission denied.
Related commands
display role

role

vpn-instance policy deny
role
Use role to create a user role and enter user role view. If the user role has been created, you directly
enter the user role view.
Use undo role to delete a user role.
61

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents