2160
C
120: U
HAPTER
SER
Configuring Access
Restriction on VTY
User Interface(s)
Configuring
Supported Protocols
on VTY User
Interface(s)
I
C
NTERFACE
ONFIGURATION
level. For the detailed description of the local-user and level commands, refer to
"AAA/RADIUS/HWTACACS Configuration" on page
Follow these steps to configure the user privilege level under a user interface:
To do...
Enter system view
Enter user interface
view
Configure user's
privilege level under
the current user
interface
You can configure access restriction on the VTY user interface through referencing
an ACL. For details regarding ACL, refer to
Follow these steps to configure access restriction on VTY user interfaces:
To do...
Enter system view
Enter VTY user interface view
Configure the
By referencing
access
basic/advance
restriction on
d ACL
the VTY user
By referencing
interface
Layer 2 ACL
Currently, only the VTY user interface allows configuration on the supported
protocols.
Follow these steps to configure supported protocols on the active VTY user
interface:
To do...
Enter system view
Enter VTY user interface view
Configure the supported
protocol(s) on the active user
interface
Use the command...
system-view
user-interface { first-num1
[ last-num1 ] | { aux | console
| tty | vty } first-num2
[ last-num2 ] }
user privilege level level
"Configuring ACLs" on page
Use the command...
system-view
user-interface { first-num1
[ last-num1 ] | vty first-num2
[ last-num2 ] }
acl [ ipv6 ] acl-number
{ inbound | outbound }
acl acl-number inbound
Use the command...
system-view
user-interface { first-num1
[ last-num1 ] | vty first-num2
[ last-num2 ] }
protocol inbound { all | pad
| ssh | telnet }
1751.
Remarks
--
--
Optional
By default, users logging in from
Console port have a privilege level of
3; users logging in from other user
interfaces have a privilege level of 0.
Remarks
--
--
Use either command
No restriction is set by
default.
Remarks
--
--
Optional
Both Telnet and SSH are
supported by default.
1881.
Need help?
Do you have a question about the MSR 50 Series and is the answer not in the manual?