background image

 

 

Because local authentication is the default authentication method for login users, you only need to 

configure a local user on the switch. 

 

To allow the local user to log in to the switch, authorize the local user to use the terminal service. 

 

To allow the local user to use all commands, assign the user role network-admin to the local user. 

The user role of a login user depends on the user role setting for the local user. It is 
network-operator by default when local scheme authentication is used. 

Software version used 

This configuration example was created and verified on S12500-CMW710-R7129. 

Configuration procedures 

# Enable scheme authentication for the console user interface. 

<Switch1> system-view 

[Switch1] user-interface console 0 

[Switch1-ui-console0] authentication-mode scheme 

[Switch1-ui-console0] quit 

# Configure a local user with the username 

test

 and password 

test

[Switch1] local-user test class manage 

[Switch1-luser-manage-test] password simple test 

# Assign the user role network-admin and the terminal service to the user. 

[Switch1-luser-manage-test] authorization-attribute user-role network-admin 

[Switch1-luser-manage-test] service-type terminal 

[Switch1-luser-manage-test] quit  

Verifying the configuration 

# Log in to the switch through the console port. Verify that the system displays a prompt for the console 

login username and password.

 

****************************************************************************** 

*  Copyright  (c)  2004-2013  Hewlett-Packard  Development  Company,  L.P.            * 

*  Without  the  owner's  prior  written  consent,                                        * 

*  no  decompiling  or  reverse-engineering  shall  be  allowed.                        * 

****************************************************************************** 

 

User interface con0 is available. 

 

 

Press ENTER to get started. 

 

login: test 

Password: 

# Enter the correct username and password to verify that you can access the CLI. 

<Switch1> system-view 

Summary of Contents for S12500 Series

Page 1: ...angzhou H3C Technologies Co Ltd All rights reserved No part of this manual may be reproduced or transmitted in any form or by any means without prior written consent of Hangzhou H3C Technologies Co Lt...

Page 2: ...ysis 3 Software version used 4 Configuration procedures 4 Verifying the configuration 4 Configuration files 5 Example Configuring password authentication for Telnet users 5 Network requirements 5 Requ...

Page 3: ...ation mode Assign a user role network operator by default Telnet By default Telnet login is disabled To log in through Telnet complete the following configuration tasks Enable the Telnet server functi...

Page 4: ...n password authentication is used The user role depends on the user role setting for the console user interface and is network admin by default Software version used This configuration example was cre...

Page 5: ...on password hash h 6 4PKgIe09Fnyq3ZGB Gjw9CActpVa5IJm9oGEgMBxt opkZkEYv7CriP31oqNJOpAyBPwxIvOds 7XcJ5aGz2xaO77H3CsaSMpRzKenq0Q Example Configuring local scheme authentication for console users Network...

Page 6: ...1 ui console0 authentication mode scheme Switch1 ui console0 quit Configure a local user with the username test and password test Switch1 local user test class manage Switch1 luser manage test passwor...

Page 7: ...g password authentication for Telnet users Network requirements Configure password authentication for Telnet users on the switch in Figure 3 Require Telnet users to provide the password test at login...

Page 8: ...interfaces enable password authentication set the password to test and assign the user role network admin switch1 user interface vty 0 15 switch1 ui vty0 15 authentication mode password switch1 ui vty...

Page 9: ...scheme authentication for Telnet users Network requirements Configure local scheme authentication for Telnet users on the switch in Figure 4 Require Telnet users to provide the username test and pass...

Page 10: ...gabitEthernet7 0 35 port link mode bridge switch1 GigabitEthernet7 0 35 port access vlan 5 switch1 GigabitEthernet7 0 35 quit Enable scheme authentication for all VTY user interfaces switch1 user inte...

Page 11: ...ss vlan 5 user interface vty 0 15 authentication mode scheme user role network admin user role network operator idle timeout 0 0 local user test class manage password hash h 6 uUxUbGGD00 3wYOs cVq29Rs...

Reviews: