Password Commands
Page 136
7950 SR OS System Management Guide
Password Commands
admin-password
Syntax
admin-password password
[
hash
|
hash2
]
no admin-password
Context
config>system>security>password
Description
This command allows a user (with admin permissions) to configure a password which enables a user
to become an administrator.
This password is valid only for one session. When enabled, no authorization to or
RADIUS is performed and the user is locally regarded as an admin user.
This functionality can be enabled in two contexts:
config>system>security>password>admin-password
<global> enable-admin
NOTE:
See the description for the
enable-admin
on the next page. If the admin-password is config-
ured in the config>system>security>password context, then any user can enter the special mode by
entering the
enable-admin
command.
enable-admin
is in the default profile. By default, all users are given access to this command.
Once the
enable-admin
command is entered, the user is prompted for a password. If the password
matches, user is given unrestricted access to all the commands.
The minimum length of the password is determined by the
minimum-length
command. The com-
plexity requirements for the password is determined by the
complexity
command.
NOTE: The
password
argument of this command is not sent to the servers. This is consistent with
other commands which configure secrets.
Also note that usernames and passwords in the FTP and TFTP URLs will not be sent to the authoriza-
tion or accounting servers when the
file>copy source-url dest-url
command is executed.
For example:
file copy ftp://test:[email protected]/test/srcfile cf1:\destfile
In this example, the username 'test' and password 'secret' will not be sent to the AAA servers (or to
any logs). They will be replaced with '****'.
The
no
form of the command removes the admin password from the configuration.
Default
no admin-password
Parameters
password —
Configures the password which enables a user to become a system administrator. The
maximum length can be up to 20 characters if unhashed, 32 characters if hashed, 54 characters if
the hash2 keyword is specified.
hash —
Specifies the key is entered in an encrypted form. If the
hash
parameter is not used, the key
is assumed to be in a non-encrypted, clear text form. For security, all keys are stored in encrypted
Содержание 7950 SR
Страница 10: ...Page 10 7950 SR OS System Management Guide List of Figures...
Страница 14: ...About This Guide Page 14 7950 SR OS System Management Guide...
Страница 16: ...Alcatel Lucent 7950 SR Router Configuration Process Page 16 7950 SR OS System Management Guide...
Страница 56: ...Configuration Notes Page 56 7950 SR OS System Management Guide...
Страница 88: ...Configuring Login Controls Page 88 7950 SR OS System Management Guide...
Страница 106: ...Security Command Reference Page 106 7950 SR OS System Management Guide...
Страница 206: ...Distributed CPU Protection Commands Page 206 7950 SR OS System Management Guide...
Страница 244: ...Debug Commands Page 244 7950 SR OS System Management Guide...
Страница 254: ...Configuration Notes Page 254 7950 SR OS System Management Guide...
Страница 276: ...SNMP Security Commands Page 276 7950 SR OS System Management Guide...
Страница 296: ...Show Commands Page 296 7950 SR OS System Management Guide...
Страница 322: ...Configuration Notes Page 322 7950 SR OS System Management Guide...
Страница 358: ...Log Management Tasks Page 358 7950 SR OS System Management Guide...
Страница 454: ...Facility Alarm List Page 454 7950 SR OS System Management Guide...
Страница 460: ...Standards and Protocols Page 460 Standards and Protocols...