Configuring An Authorization Scheme - Huawei Quidway S3700 Series Configuration Manual

Hide thumbs Also See for Quidway S3700 Series:
Table of Contents

Advertisement

Quidway S3700 Series Ethernet Switches
Configuration Guide - Security
authentication-mode { hwtacacs | radius | local }
The authentication mode is set.
none indicates the non-authentication mode. By default, the local authentication mode is used.
If multiple authentication modes are used in an authentication scheme, the non-authentication
mode must be used as the last authentication mode.
If the authentication mode is set to RADIUS or HWTACACS, you must configure a RADIUS
or an HWTACACS server template and apply the template in the view of the domain that the
user belongs to.
Step 5 Run:
authentication-super { hwtacacs | super }
Or,
authentication-super none
The authentication mode for upgrading user levels is set.
The none parameter indicates that the non-authentication mode is used. That is, user levels are
changed by users. By default, the local authentication mode is used for upgrading user levels.
When the local authentication mode is used for upgrading user levels, you need to run the super
password command in the system view to set the password for upgrading user levels.
----End

1.3.3 Configuring an Authorization Scheme

Context
Procedure
Step 1 Run:
system-view
The system view is displayed.
Step 2 Run:
aaa
The AAA view is displayed.
Step 3 Run:
authorization-scheme authorization-scheme-name
An authorization scheme is created and the authorization scheme view is displayed.
Issue 01 (2011-07-15)
NOTE
If multiple authentication modes are used in an authentication scheme, the authentication modes take effect
according to their configuration sequence. The S3700 adopts the next authorization mode only when the
current authorization mode is invalid. The S3700, however, does not adopt any other authorization mode
when users fail to authorize in the current authorization mode.
NOTE
You can configure command-line-based authorization only when HWTACACS is adopted.
Huawei Proprietary and Confidential
Copyright © Huawei Technologies Co., Ltd.
1 AAA and User Management Configuration
*
[ none ]
*
[ none ]
6

Advertisement

Table of Contents
loading

Table of Contents