10: User Authentication
SecureLinx SLC User Guide
117
Device Ports
Right to enter device port settings.
PC Card
Right to enter modem settings for PC cards.
Reboot &
Shutdown
Right to use the CLI or shut down the SLC and then reboot it.
Firmware &
Configuration
Right to upgrade the firmware on the unit and save or restore
a configuration (all settings). Selecting this option
automatically selects
Reboot & Shutdown
.
Diagnostics &
Reports
Right to obtain diagnostic information and reports about the
unit.
SLC Network
Right to view and manage SLCs on the local subnet.
Web Access
Right to access Web-Manager.
5. Click
Apply
.
Note:
You must reboot the unit before your changes will take effect.
Kerberos Commands
These commands for the command line interface correspond to the web page entries
described above:
To configure the SLC to use Kerberos to authenticate users who log in via the
Web, SSH, Telnet, or the console port:
set kerberos <one or more parameters>
Parameters
:
ipaddr <Key Distribution Center IP Address>
kdc <Key Distribution Center>
port <Key Distribution Center TCP Port>
realm <Kerberos Realm>
state <enable|
disable
>
useldapforlookup <enable|
disable
>
To set user group and permissions for Kerberos users:
set kerberos group <default|power|admin>
To set permissions for Kerberos users not already defined by the user rights
group:
set kerberos permissions <Permission List>
where
<Permission List>
is one or more of
nt, sv, dt, lu, ra, sk, um, dp, pc,
rs, rc, dr, wb, sn, ad
To remove a permission, type a minus sign before the two-letter abbreviation for a user
right.
To set a default custom menu for Kerberos users:
set kerberos custommenu <Menu Name>