Role Default-Role Enable - HPE D6020 Maintenance And Service Manual

Hide thumbs Also See for HPE D6020:
Table of Contents

Advertisement

Predefined user roles
network-admin
Parameters
name role-name: Specifies a username. The role-name argument is a case-sensitive string of 1 to
63 characters.
Usage guidelines
You can create a maximum of 64 user roles in addition to the predefined user roles.
To change the permissions assigned to a user role, you must first enter the user role view.
You cannot delete the predefined user roles or change the permissions assigned to network-admin,
network-operator, level-15, security-audit, or guest-manager.
You cannot assign the security-audit user role to non-AAA authentication users.
Level-0 to level-14 users can modify their own permissions for all commands except for the display
history-command all command.
Examples
# Create a user role named role1 and enter its view.
<Sysname> system-view
[Sysname] role name role1
[Sysname-role-role1]
Related commands
display role
interface policy deny
rule
security-zone policy deny
vlan policy deny
vpn-instance policy deny

role default-role enable

Use role default-role enable to enable the default user role feature for remote AAA users.
Use undo role default-role enable to restore the default.
Syntax
role default-role enable [ role-name ]
undo role default-role enable
Default
The default user role feature is disabled. AAA users who do not have a user role cannot log in to the
device.
Views
System view
Predefined user roles
network-admin
35

Advertisement

Table of Contents
loading

Table of Contents