
1-10
levels, which are visit, monitor, system, and manage from low to high, and identified respectively by 0
through 3.
describes the levels of the commands.
Table 1-3
Default command levels
Level
Privilege
Description
0 Visit
Involves commands for network diagnosis and commands for accessing
an external device. Commands at this level are not allowed to be saved
after being configured. After the device is restarted, the commands at this
level will be restored to the default settings. Commands at this level
include
ping
,
tracert
,
telnet
and
ssh2
.
1 Monitor
Includes commands for system maintenance and service fault diagnosis.
Commands at this level are not allowed to be saved after being
configured. After the device is restarted, the commands at this level will
be restored to the default settings. Commands at this level include
debugging
,
terminal
,
refresh
,
reset
, and
send
.
2 System
Provides service configuration commands, including routing and
commands at each level of the network for providing services. By default,
commands at this level include all configuration commands except for
those at manage level.
3 Manage
Influences the basic operation of the system and the system support
modules for service support. By default, commands at this level involve
file system, FTP, TFTP, Xmodem command download, user
management, level setting, as well as parameter setting within a system
(the last case involves those non-protocol or non RFC provisioned
commands).
Configuring user privilege level
User privilege level can be configured by using AAA authentication parameters or under a user
interface.
1) Configure user privilege level by using AAA authentication parameters
If the user interface authentication mode is
scheme
when a user logs in, and username and password
are needed at login, then the user privilege level is specified in the configuration of AAA authentication.
Follow these steps to configure user privilege level by using AAA authentication parameters:
To do…
Use the command…
Remarks
Enter system view
system-view
—
Enter user interface view
user-interface
[
type
]
first-number
[
last-number
]
—
Configure the authentication
mode for logging in to the user
interface as
scheme
authentication-mode
scheme
[
command-authorization
]
Required
By default, the authentication
mode for VTY and AUX users is
password
.
Exit to system view
quit
—
Configure the authentication
mode for SSH users as
password
For the details, refer to
SSH2.0
Configuration
in the
Security
Volume.
Required if users use SSH to
log in, and username and
password are needed at
authentication
Summary of Contents for S5120-EI Series
Page 139: ...ii...
Page 578: ...1 21 C...
Page 739: ...1 12 Enable ARP detection based on 802 1X security entries SwitchB arp detection mode dot1x...
Page 926: ...2 8...
Page 942: ...ii Single Device Upgrade 3 4 IRF System Upgrade 3 5...
Page 985: ...1 1...
Page 1018: ...1 6...