H3C S5500-SI Series Operation Manual page 973

Hide thumbs Also See for S5500-SI Series:
Table of Contents

Advertisement

Level
Privilege
1
Monitor
2
System
3
Manage
Configuring user privilege level
User privilege level can be configured by using AAA authentication parameters or under a user
interface.
1)
Configure user privilege level by using AAA authentication parameters
If the user interface authentication mode is scheme when a user logs in, and username and password
are needed at login, then the user privilege level is specified in the configuration of AAA authentication.
Follow these steps to configure user privilege level by using AAA authentication parameters:
To do...
Enter system view
Enter user interface view
Configure the authentication
mode for logging in to the user
interface as scheme
Exit to system view
Configure the authentication
mode for SSH users as
password
Configure the
user privilege
level by using
Using local
AAA
authentication
authentication
parameters
Includes commands for system maintenance and service fault
diagnosis. Commands at this level are not allowed to be saved after
being configured. After the device is restarted, the commands at this
level will be restored to the default settings. Commands at this level
include debugging, terminal, refresh, reset, and send.
Provides service configuration commands, including routing and
commands at each level of the network for providing services. By
default, commands at this level include all configuration commands
except for those at manage level.
Influences the basic operation of the system and the system support
modules for service support. By default, commands at this level involve
file system, FTP, TFTP, Xmodem command download, user
management, level setting, as well as parameter setting within a
system (the last case involves those non-protocol or non RFC
provisioned commands).
Use the command...
system-view
user-interface [ type ]
first-number [ last-number ]
authentication-mode scheme
[ command-authorization ]
quit
For the details, refer to SSH2.0
Configuration in the Security
Volume.
Use
the
command to create a local
user and enter local user
view.
Use the level keyword in the
authorization-attribute
command to configure the
user level.
1-10
Description
Required
By default, the authentication
mode for VTY and AUX users is
password.
Required if users use SSH to
log in, and username and
password are needed at
authentication
local-user
User either approach
For local authentication, if
you do not configure the
user level, the user level is
0, that is, users of this level
can use commands with
level 0 only.
Remarks

Advertisement

Chapters

Table of Contents
loading

Table of Contents