HP MSR Series Configuration Manual page 36

Hide thumbs Also See for MSR Series:
Table of Contents

Advertisement

To make the command authorization or command accounting function take effect, apply an
HWTACACS scheme to the intended ISP domain. This scheme must specify the IP address of the
authorization server and other authorization parameters.
If the local authentication scheme is used, use the authorization-attribute level level command in
local user view to set the user privilege level on the device.
If a RADIUS or HWTACACS authentication scheme is used, set the user privilege level on the
RADIUS or HWTACACS server.
To configure scheme authentication for console login:
Step
1.
Enter system view.
2.
Enter console user interface
view.
3.
Enable scheme
authentication.
4.
Enable command
authorization.
Command
system-view
user-interface console first-number
[ last-number ]
authentication-mode scheme
command authorization
29
Remarks
N/A
N/A
Whether local, RADIUS, or
HWTACACS authentication is
adopted depends on the configured
AAA scheme.
By default, console login users are
not authenticated.
Optional.
By default, command authorization
is disabled. The commands
available for a user only depend on
the user privilege level.
If command authorization is
enabled, a command is available
only if the user has the
commensurate user privilege level
and is authorized to use the
command by the AAA scheme.

Hide quick links:

Advertisement

Table of Contents
loading

Table of Contents