D-Link DXS-3600-16S Manual page 59

Dxs-3600 series layer 2/3 managed 10gbe switch
Hide thumbs Also See for DXS-3600-16S:
Table of Contents

Advertisement

Parameters
default
list-name
method
Default
Command Mode
Command Default Level
Usage Guideline
Example
DXS-3600-32S#configure terminal
DXS-3600-32S(config)#aaa authorization exec list-1 group radius
DXS-3600-32S(config)#
6-6 aaa authorization console
This command is used to enable authorization function for users who has logged in the console. The no form of this
command is used to disable the authorization function.
aaa authorization console
no aaa authorization console
Parameters
Default
Command Mode
Command Default Level
Usage Guideline
DXS-3600 Series 10GbE Layer 2/3 Switch CLI Reference Guide
When this parameter is used, the following defined method list is used as the default
method for Exec authorization.
Name of the user authorization method list. After the user-defined authorization
method list created, you can use authorization exec line configuration command to
apply the authorization method list to the specified terminal lines.
Syntax "{local | none | group {radius | tacacs+ | group_name}}".
Up to four methods supported:
local - Use the local user name database for authorization.
none - Do not perform authorization.
group - Can be followed by radius or tacas+ or a group_name
"group radius" means use all RADIUS servers group
"group tacacs+" means use all TACACS+ server group.
"group group_name" is the specific group created via aaa group server global
configuration command.
The default value is disabled.
Global Configuration Mode.
Level: 15
It supports authorization of users logged in the NAS CLI and assignment of CLI
authority level (0-15). The aaa authorization exec function is effective on condition
that Login authentication function has been enabled. It can not enter the CLI if it fails
to enable the aaa authorization exec. You must apply the exec authorization method
to the terminal line; otherwise the configured method is ineffective.
This example shows how to use the RADIUS server to authorize EXEC. After the
authorization method list, called 'list-1' has been created, you can use the
Authorization EXEC Line Configuration command to apply this method list to the
console, SSH, or other terminals.
None.
The default option is disabled.
Global Configuration Mode.
Level: 15
It supports to identify the users logged in from the console and from other terminals,
configure whether to authorize the users logged in from the console or not. If the
command authorization function is disabled on the console, the authorization
method list applied to the console line is ineffective.
51

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents