2-10
To do…
Use the command…
Remarks
Enter the
default ISP
domain view
domain
domain name
Specify the
AAA scheme
to be applied
to the domain
authentication default
{
hwtacacs- scheme
hwtacacs-scheme-name
[
local
] |
local
|
none
|
radius-scheme
radius-scheme-name
[
local
] }
Configure
the
authentica
tion mode
Quit to
system view
quit
Optional
By default, the local AAA scheme
is applied. If you specify to apply
the local AAA scheme, you need
to perform the configuration
concerning local user as well.
If you specify to apply an existing
scheme by providing the
radius
-
scheme-name
argument,
you need to perform the following
configuration as well:
z
Perform AAA-RADIUS
configuration on the switch.
(Refer to
AAA Configuration
in
the
Security Volume
for
details.)
z
Configure the user name and
password accordingly on the
AAA server. (Refer to the user
manual of AAA server.)
Create a local user (Enter
local user view.)
local-user
user-name
Required
No local user exists by default.
Set the authentication
password for the local user
password
{
simple
|
cipher
}
password
Required
By default, a user is authorized
with no password
Specifies the level of the
local user
authorization-attribute level
level
By default, no authorization
attribute is configured for a local
user
Specify the service type
for AUX users
service-type terminal
Required
By default, a user is authorized
with no service
Note that, when you log in to an Ethernet switch using the scheme authentication mode, your access
rights depend on your user level defined in the AAA scheme.
When the local authentication mode is used, the user levels are specified using the
authorization-attribute level level
command.
When the RADIUS or HWTACACS authentication mode is used, the user levels are set on the
corresponding RADIUS or HWTACACS servers.
For more information about AAA, RADIUS, and HWTACACS, see
AAA Configuration
in the
Security
Volume
.
Содержание S7902E
Страница 82: ...1 4 DeviceA interface tunnel 1 DeviceA Tunnel1 service loopback group 1 ...
Страница 200: ...1 11 DeviceB display vlan dynamic No dynamic vlans exist ...
Страница 494: ...ii Displaying and Maintaining Tunneling Configuration 1 45 Troubleshooting Tunneling Configuration 1 45 ...
Страница 598: ...ii ...
Страница 1757: ...4 9 ...
Страница 1770: ...6 4 ...
Страница 2017: ...2 11 Figure 2 3 SFTP client interface ...
Страница 2062: ...i Table of Contents 1 URPF Configuration 1 1 URPF Overview 1 1 What is URPF 1 1 How URPF Works 1 1 Configuring URPF 1 2 ...
Страница 2238: ...1 16 DeviceA cfd linktrace service instance 1 mep 1001 target mep 4002 ...
Страница 2442: ...2 4 Set the interval for sending Syslog or trap messages to 20 seconds Device mac address information interval 20 ...