H3C SR6600 Fundamentals Configuration Manual page 55

Hide thumbs Also See for SR6600:
Table of Contents

Advertisement

To do...
Set the local password
Specifies the command level of the
local user
Specify the service type for the local
user
Exit to system view
Configure common settings for VTY
user interfaces
After you enable command authorization, you need to perform the following configuration to make the
function take effect:
Create a HWTACACS scheme, and specify the IP address of the authorization server and other
authorization parameters. For more information, see AAA in the Security Configuration Guide.
Reference the created HWTACACS scheme in the ISP domain. For more information, see AAA in
the Security Configuration Guide.
After you enable command accounting, you need to perform the following configuration to make the
function take effect:
Create a HWTACACS scheme, and specify the IP address of the accounting server and other
accounting parameters. For more information, see AAA in the Security Configuration Guide.
Reference the created HWTACACS scheme in the ISP domain. For more information, see AAA in
the Security Configuration Guide.
When users adopt the scheme mode to log in to the device, the level of the commands that the users
can access depends on the user privilege level defined in the AAA scheme.
When the AAA scheme is local, the user privilege level is defined by the authorization-attribute
level level command.
When the AAA scheme is RADIUS or HWTACACS, the user privilege level is configured on the
RADIUS or HWTACACS server.
For more information about AAA, RADIUS, and HWTACACS, see AAA in the Security Configuration
Guide.
When you log in to the device through telnet again:
You are required to enter the login username and password. A prompt such as <H3C> appears
after you enter the correct username (for example, admin) and password and press Enter, as
shown in
Figure
3-12.
If "All user interfaces are used, please try later!" is displayed, it means the current login users
exceed the maximum number. Please try later.
Use the command...
password { cipher | simple }
password
authorization-attribute level
level
service-type telnet
quit
3-44
Remarks
Required
By default, no local password is set.
Optional
By default, the command level is 0.
Required
By default, no service type is
specified.
Optional
See
Configuring Common Settings
for VTY User Interfaces
(Optional).

Advertisement

Table of Contents
loading

Table of Contents