H3C S5830V2 Security Configuration Manual page 35

Hide thumbs Also See for S5830V2:
Table of Contents

Advertisement

Step
8.
(Optional.) Configure
password control attributes
for the local user.
9.
(Optional.) Assign the
local user to a user group.
Configuring user group attributes
User groups simplify local user configuration and management. A user group comprises a group of local
users and has a set of local user attributes. You can configure local user attributes for a user group to
implement centralized user attributes management for the local users in the group. Local user attributes
that are manageable include authorization attributes.
By default, every newly added local user belongs to the default user group system and bears all attributes
of the group. To assign a local user to a different user group, use the user-group command in local user
view.
To configure user group attributes:
Step
1.
Enter system view.
2.
Create a user group and
enter its view.
3.
Configure authorization
attributes for the user group.
4.
(Optional.) Configure
password control attributes
for the user group.
Command
Set the password aging time:
password-control aging
aging-time
Set the minimum password
length:
password-control length length
Configure the password
composition policy:
password-control composition
type-number type-number
[ type-length type-length ]
group group-name
Command
system-view
user-group group-name
authorization-attribute { acl
acl-number | idle-cut minute | vlan
vlan-id | work-directory
directory-name } *
Set the password aging time:
password-control aging
aging-time
Set the minimum password length:
password-control length length
Configure the password
composition policy:
password-control composition
type-number type-number
[ type-length type-length ]
21
Remarks
Optional.
By default, the local user uses
password control attributes of the
user group to which the local user
belongs.
Only device management users
support the password control
function.
By default, a local user belongs to the
default user group system.
Remarks
N/A
By default, there is a
system-defined user group named
system, which is the default user
group.
By default, no authorization
attribute is configured for a user
group.
Optional.
By default, the user group uses
global settings, including a
90-day password aging time, a
minimum password length of 10
characters, and at least one
password composition type and
at least one character required
for each password composition
type. For more information about
password control commands, see
Security Command Reference.

Advertisement

Table of Contents
loading

This manual is also suitable for:

S5820v2

Table of Contents