
51
Configuring scheme authentication for console or USB
console login
Step
Command
Remarks
1.
Enter system view.
system-view
N/A
2.
Enter console/AUX
line view or class
view.
•
Enter console or AUX line
view:
line
{
aux
|
console
}
first
-
number
[
last-number
]
•
Enter console or AUX line
class view:
line class
{
aux
|
console
}
A setting in user line view applies only to
the user line. A setting in user line class
view applies to all user lines of the class.
A non-default setting in either view takes
precedence over a default setting in the
other view. A non-default setting in user
line view takes precedence over a
non-default setting in user line class view.
A setting in user line class view does not
take effect for current online users. It
takes effect only for new login users.
3.
Enable scheme
authentication.
authentication-mode
scheme
In non-FIPS mode, authentication is
disabled for the console line and
password authentication is enabled for
the AUX line by default.
In FIPS mode, scheme authentication is
enabled by default.
To use scheme authentication, you must also perform the following tasks:
•
Configure login authentication methods in ISP domain view.
•
For remote authentication, configure a RADIUS, HWTACACS, or LDAP scheme.
•
For local authentication, create a local user account and configure the relevant attributes.
For more information, see
Security Configuration Guide
.
After you finish this configuration task, a user must provide the configured username and password
when logging in through the console or USB console port.
Configuring common AUX or console line settings
Some common settings for an AUX or console line take effect immediately and can interrupt the
current session. Use a login method different from console login to log in to the device before you
change AUX or console line settings.
After you change AUX or console line settings, adjust the settings on the configuration terminal
accordingly for a successful login.
To configure common settings for an AUX or console line:
Step
Command
Remarks
1.
Enter system view.
system-view
N/A
Summary of Contents for FlexNetwork 10500 Series
Page 139: ...130 Sysname display version ...