H3C S5120-SI Series Operation Manual page 606

Hide thumbs Also See for S5120-SI Series:
Table of Contents

Advertisement

Table 1-3 Default command levels
Level
0
Visit
1
Monitor
2
System
3
Manage
Configuring user privilege level
User privilege level can be configured by using AAA authentication parameters or under a user
interface.
1)
Configure user privilege level by using AAA authentication parameters
If the user interface authentication mode is scheme when a user logs in, and username and password
are needed at login, then the user privilege level is specified in the configuration of AAA authentication.
Follow these steps to configure user privilege level by using AAA authentication parameters:
To do...
Enter system view
Enter user interface view
Configure the authentication
mode for logging in to the user
interface as scheme
Exit to system view
Configure the authentication
mode for SSH users as
password
Privilege
Involves commands for network diagnosis and commands
for accessing an external device. Commands at this level
are not allowed to be saved after being configured. After
the device is restarted, the commands at this level will be
restored to the default settings. Commands at this level
include ping, tracert, telnet and ssh2.
Includes commands for system maintenance and service
fault diagnosis. Commands at this level are not allowed to
be saved after being configured. After the device is
restarted, the commands at this level will be restored to
the default settings. Commands at this level include
debugging, terminal, refresh, reset, and send.
Provides service configuration commands, including
routing and commands at each level of the network for
providing services. By default, commands at this level
include all configuration commands except for those at
manage level.
Influences the basic operation of the system and the
system support modules for service support. By default,
commands at this level involve file system, FTP, TFTP,
Xmodem command download, user management, level
setting, as well as parameter setting within a system (the
last case involves those non-protocol or non RFC
provisioned commands).
Use the command...
system-view
user-interface { first-num1
[ last-num1 ] | { aux | vty }
first-num2 [ last-num2 ] }
authentication-mode scheme
[ command-authorization ]
quit
For the details, refer to SSH2.0
Configuration.
1-10
Description
Remarks
Required
By default, the authentication
mode for VTY users is
password, and no
authentication is needed for
AUX login users.
Required if users use SSH to
log in, and username and
password are needed at
authentication

Advertisement

Table of Contents
loading

Table of Contents