12: User Authentication
SLC™ Console Manager User Guide
194
To set permissions for Kerberos users not already defined by the user rights group:
set kerberos permissions <Permission List>
where
<Permission List> is one or more of nt, sv, dt, lu, ra, sk, um, dp, ub,
rs, rc, dr, wb, sn, ad, po, pc
To remove a permission, type a minus sign before the two-letter abbreviation for a user
right.
To set a default custom menu for Kerberos users:
set kerberos custommenu <Menu Name>
To view Kerberos settings:
show kerberos
Similar to RADIUS, the main function of is to perform authentication for remote access.
The SLC console manager supports the protocol (not the older TACACS or XTACACS
protocols).
The system administrator can configure the SLC unit to use to authenticate users
attempting to log in using the Web, Telnet, SSH, or the console port.
Users who are authenticated through Kerberos are granted device port access through the port
permissions on this page.
All Kerberos users are members of a group that has predefined user rights associated with it. You
can add additional user rights that are not defined by the group.
To configure the SLC console manager to use to authenticate users:
1.
Click the
tab and select
. The following page displays.