3Com S7906E Configuration Manual page 1837

S7900e family release 6600 series
Hide thumbs Also See for S7906E:
Table of Contents

Advertisement

the console, or Telnet to connect to the device, such as Telnet or SSH users. Each connection of these
types is called an EXEC user). The default right for FTP users is to use the root directory of the device.
Before configuring authorization methods, complete these three tasks:
1)
For HWTACACS authorization, configure the HWTACACS scheme to be referenced first. For
RADIUS authorization, the RADIUS authorization scheme must be the same as the RADIUS
authentication scheme; otherwise, it does not take effect.
2)
Determine the access mode or service type to be configured. With AAA, you can configure an
authorization scheme specifically for each access mode and service type, limiting the authorization
protocols that can be used for access.
3)
Determine whether to configure an authorization method for all access modes or service types.
Follow these steps to configure AAA authorization methods for an ISP domain:
To do...
Enter system view
Enter ISP domain view
Specify
the
authorization method for all
types of users
Specify
the
command
authorization method
Specify
the
authorization
method for LAN users
Specify
the
authorization
method for login users
Specify
the
authorization
method for portal users
Use the command...
system-view
domain isp-name
authorization
{
hwtacacs-scheme
default
hwtacacs-scheme-name
[ local ] | local | none |
radius-scheme
radius-scheme-name [ local ] }
authorization
{
hwtacacs-scheme
hwtacacs-scheme-name [ local
| none ] | local | none }
authorization
{ local | none | radius-scheme
radius-scheme-name [ local ] }
authorization
{
hwtacacs-scheme
hwtacacs-scheme-name
[ local ] | local | none |
radius-scheme
radius-scheme-name [ local ] }
authorization portal { local |
none
|
radius-scheme-name [ local ] }
1-18
default
Optional
local by default
command
Optional
The
method is used by default.
Optional
lan-access
The
method is used by default.
login
Optional
The
method is used by default.
Optional
radius-scheme
The
method is used by default.
Remarks
default
authorization
default
authorization
default
authorization
default
authorization

Hide quick links:

Advertisement

Chapters

Table of Contents
loading

This manual is also suitable for:

S7910eS7906e-vS7903eS7903e-sS7902e

Table of Contents