
44
Login overview
The first time you access the device, you can only log in to the CLI of the default MDC through the
console port. After login, you can create non-default MDCs, change console login parameters, or
configure other access methods.
describes the supported login methods, the default login
settings, and the minimum configuration requirements.
Non-default MDCs do not have any console ports or USB console ports. To log in to a non-default
MDC for the first time, you must perform the following tasks:
•
Log in to the default MDC.
•
Switch to the non-default MDC by using the
switchto mdc
command.
After you log in to a non-default MDC, you can configure Telnet login, SSH login, Web, SNMP access,
or RESTful access. Then, administrators of the default MDC and those of the non-default MDC can
access the non-default MDC through Telnet, SSH, SNMP, Web, or the RESTful API. For more
information about MDC, see
Virtual Technologies Configuration Guide
.
The device supports the FIPS mode that complies with NIST FIPS 140-2 requirements. Support for
features, commands, and parameters might differ in FIPS mode and non-FIPS mode. For more
information about FIPS mode, see
Security Configuration Guide
.
Telnet, HTTP-based Web login, and HTTP-based RESTful access are not supported in FIPS mode.
Table 10 Login methods at a glance
Login method
Default settings and minimum configuration
requirements
Login
configuration
CLI login:
•
Console
login
By default, console login is enabled and does not require
authentication. The default user role is network-admin. To
improve device security, configure password or scheme
authentication for the AUX line immediately after you log in to
the device for the first time.
Configuring console
or USB console login
•
Telnet login
By default, Telnet login is disabled.
To enable Telnet login, perform the following tasks:
•
Enable the Telnet server feature.
•
Assign an IP address to a Layer 3 interface and make sure
the interface and the Telnet client can reach each other.
•
Configure an authentication mode for VTY login users. By
default, password authentication is used but no password
is configured.
•
Assign a user role to VTY login users. By default, a VTY
login user is assigned the network-operator user role.
•
SSH login
By default, SSH login is disabled.
To enable SSH login, perform the following tasks:
•
Enable the SSH server feature and configure SSH
attributes.
•
Assign an IP address to a Layer 3 interface. Make sure the
interface and the SSH client can reach each other.
•
Configure scheme authentication for VTY login users. By
default, password authentication is used.
•
Assign a user role to VTY login users. By default, a VTY
login user is assigned the network-operator user role.
Summary of Contents for FlexNetwork 10500 Series
Page 139: ...130 Sysname display version ...